Malware

Malware.AI.4046188845 information

Malware Removal

The Malware.AI.4046188845 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4046188845 virus can do?

  • Presents an Authenticode digital signature
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • The executable is likely packed with VMProtect
  • Authenticode signature is invalid
  • CAPE detected the DCRat malware family

How to determine Malware.AI.4046188845?


File Info:

name: 366A07CA0A4B578C85D0.mlw
path: /opt/CAPEv2/storage/binaries/480878ab024e17e5baa49c62f29304a97634fc253058dd8b5cc120dc9cd66bb6
crc32: 05EA1806
md5: 366a07ca0a4b578c85d0649b5ba8cdcc
sha1: 6cc28518c1bc6a5e6dbb871b893178a703c7069e
sha256: 480878ab024e17e5baa49c62f29304a97634fc253058dd8b5cc120dc9cd66bb6
sha512: 1615028b01f79aacb56ca7e86e407be6cdd91c7f10b99ce7cf4ef8d7bc207b769dea018d83713f47d2c43230a1ece1f617c8c339c1a97d37497720929eab36f3
ssdeep: 24576:XxWpkp7+CEjo2vvKyMBu4eqSiYpmuvYNXAocgl:hmkp7Oo0KyMBu4xSk
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BE353A342EEA152AF1B3BF3D9AE47596D96FB6A33713985D0061038A0B13E42DDD063D
sha3_384: 55ca0624d9bad45f618e5c8109387a093e02922bba96493549c5660d29b7772fca536eeee3082f4a057f29c20954106a
ep_bytes: ff2500405000bc3500e4110069620300
timestamp: 2021-11-21 01:09:22

Version Info:

FileVersion: 2019.4.15.16511847
ProductVersion: 2019.4.15.16511847
Unity Version: 2019.4.15f1_fbf367ac14e9
Translation: 0x0409 0x04b0

Malware.AI.4046188845 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.MSIL.Basic.6.Gen
ALYacTrojan.MSIL.Basic.6.Gen
CylanceUnsafe
K7AntiVirusTrojan ( 7000001c1 )
K7GWTrojan ( 7000001c1 )
Cybereasonmalicious.a0a4b5
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Spy.Agent.CVT
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Packed.Uztuby-9891175-0
KasperskyHEUR:Trojan-PSW.MSIL.Stealer.gen
BitDefenderTrojan.MSIL.Basic.6.Gen
AvastWin32:TrojanX-gen [Trj]
Ad-AwareTrojan.MSIL.Basic.6.Gen
EmsisoftTrojan.MSIL.Basic.6.Gen (B)
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.366a07ca0a4b578c
SophosML/PE-A + Mal/VMProtBad-A
SentinelOneStatic AI – Malicious PE
GDataTrojan.MSIL.Basic.6.Gen
AviraHEUR/AGEN.1143157
MAXmalware (ai score=84)
ArcabitTrojan.MSIL.Basic.6.Gen
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
McAfeeArtemis!366A07CA0A4B
MalwarebytesMalware.AI.4046188845
RisingBackdoor.DCRat!1.D886 (CLASSIC)
eGambitUnsafe.AI_Score_99%
FortinetMSIL/Agent.CVT!tr.spy
BitDefenderThetaGen:NN.ZemsilF.34294.fv2@a0BdqCei
AVGWin32:TrojanX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)
MaxSecureTrojan.Malware.300983.susgen

How to remove Malware.AI.4046188845?

Malware.AI.4046188845 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment