Malware

Malware.AI.4044663400 removal instruction

Malware Removal

The Malware.AI.4044663400 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4044663400 virus can do?

  • At least one process apparently crashed during execution
  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Possible date expiration check, exits too soon after checking local time
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Chinese (Traditional)
  • Authenticode signature is invalid
  • Created a process from a suspicious location
  • Deletes executed files from disk
  • Anomalous binary characteristics

How to determine Malware.AI.4044663400?


File Info:

name: D93133B2D1512050B6FB.mlw
path: /opt/CAPEv2/storage/binaries/006644ce66d3e1484c231f353266949c51bba3e92d04b92d5fd11bb80f8ef6f5
crc32: 372A0A0E
md5: d93133b2d1512050b6fb800c8eec6eb5
sha1: b2e941ed15494ab06040dbd1d6951ecc38c0094c
sha256: 006644ce66d3e1484c231f353266949c51bba3e92d04b92d5fd11bb80f8ef6f5
sha512: 1639398421f031b74f043d831cc6375212f98e81e69a6a2c9daebf14230aacc3e773672de8e05ac8bdc6aaddd56e74ed946352a5ccf1714fadf3bb18911eaa63
ssdeep: 6144:8d93ZBZMbqYgomHmXJ7tim+uB80b99xudCD796Q2KSulUaFt7:8r3ZBIRam+70Fudy7969paFd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12864F209A78281B3D4404A70908E53FBE639FB0667B0F3DFC7A75D596C64903B90ADB6
sha3_384: d96776e844627a764762472d641e7a4f85b6e66b9ad29ae62774ac7aa4830687d93584ee7768294b20823ee32bd3b782
ep_bytes: e89f28000050e8832a01000000000090
timestamp: 2006-07-20 06:05:34

Version Info:

0: [No Data]

Malware.AI.4044663400 also known as:

LionicTrojan.Win32.Magania.ldPp
DrWebmodification of Win32.Besso
MicroWorld-eScanPacker.Malware.NSAnti.1
FireEyePacker.Malware.NSAnti.1
ALYacZum.Razy.1
CylanceUnsafe
VIPREPacker.Malware.NSAnti.1
SangforSpyware.Win32.OnLineGames.Vv7q
AlibabaTrojanSpy:Win32/OnLineGames.13eaad5d
Cybereasonmalicious.2d1512
BitDefenderThetaAI:Packer.0C62F9921D
CyrenW32/Zbot.W.gen!Eldorado
SymantecTrojan.Gen.2
Elasticmalicious (high confidence)
ESET-NOD32Win32/Pacex.Gen
TrendMicro-HouseCallMal_Onlineg
Paloaltogeneric.ml
ClamAVWin.Packed.Delf-9846513-0
KasperskyPacked.Win32.Krap.b
BitDefenderPacker.Malware.NSAnti.1
NANO-AntivirusTrojan.Win32.NSAnti.fthc
AvastWin32:Oliga [Trj]
TencentWin32.Virus.Pacex.Wqwf
EmsisoftPacker.Malware.NSAnti.1 (B)
ComodoTrojWare.Win32.PSW.Gamania.GenA@1oom6i
TrendMicroMal_Onlineg
McAfee-GW-EditionBehavesLike.Win32.Dropper.fc
SentinelOneStatic AI – Malicious SFX
Trapminesuspicious.low.ml.score
SophosMal/RarMal-B
IkarusTrojan-GameThief.Win32.Magania
GDataZum.Razy.1
JiangminPacked.Krap.Gen.a
AviraDR/Pacex.M
Antiy-AVLTrojan/Generic.ASMalwS.4
ViRobotTrojan.Win32.PSWMagania.322909
MicrosoftTrojanSpy:Win32/OnLineGames.ZDR
CynetMalicious (score: 99)
McAfeeArtemis!D93133B2D151
VBA32Malware-Cryptor.Win32.NSAnti
MalwarebytesMalware.AI.4044663400
APEXMalicious
RisingVirus.Mian007!1.9ADC (CLASSIC)
YandexTrojan.Lineage.Gen!Pac.3
MAXmalware (ai score=86)
FortinetW32/Packed.ONLINEGAMES.gen!tr
AVGWin32:Oliga [Trj]
PandaTrj/Lineage.HWQ
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Malware.AI.4044663400?

Malware.AI.4044663400 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment