Malware

Should I remove “Malware.AI.4046990504”?

Malware Removal

The Malware.AI.4046990504 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4046990504 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • Anomalous binary characteristics
  • Attempts to modify Explorer settings to prevent hidden files from being displayed
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.4046990504?


File Info:

name: A74281F71FFB2EA1E39C.mlw
path: /opt/CAPEv2/storage/binaries/fc2088003989eac6ac631d64da18a54a6b8f495293f72e4db712205beceae47b
crc32: 11D124EF
md5: a74281f71ffb2ea1e39c691bd21685c4
sha1: bbc1e46dd76747c2e0422de71951fbf288e2da9b
sha256: fc2088003989eac6ac631d64da18a54a6b8f495293f72e4db712205beceae47b
sha512: 877453dfa4da3c167658681070b1ef5380793666727c8e8a14367d8206b0041a69f3eb71898dd27adc53f0428bb5f9295246e8eecd2a09b27601b57055a7a89a
ssdeep: 768:6XgmpnBqjpp9IBz6+9A/v/bVlbdfs3OfKDHGIHY56WP:6XgTpiB6y43wY56WP
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18F73B57A73230E43D142237A3C2686CF59F7F4057F07D0DA25A167B59A22EA9897E343
sha3_384: 925bb80666697c0bda74a94b43aded198b06b1c6882f8f5cac0bf755591f03d84fda91b318c077225defefff701fc40f
ep_bytes: 6854124000e8f0ffffff000000000000
timestamp: 2009-10-08 08:25:28

Version Info:

0: [No Data]

Malware.AI.4046990504 also known as:

BkavW32.AIDetectMalware
LionicWorm.Win32.VBNA.li8h
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.a74281f71ffb2ea1
CAT-QuickHealTrojan.Vobfus.gen
ALYacGen:Variant.Ser.Zusy.2197
Cylanceunsafe
ZillyaTrojan.VB.Win32.922924
SangforSuspicious.Win32.Save.a
K7AntiVirusEmailWorm ( 00568ec01 )
AlibabaWorm:Win32/vobfus.112e
K7GWEmailWorm ( 00568ec01 )
Cybereasonmalicious.71ffb2
BitDefenderThetaAI:Packer.52E094DC1F
VirITTrojan.Win32.VB.IM
CyrenW32/VB.X.gen!Eldorado
SymantecW32.Changeup
ESET-NOD32Win32/AutoRun.VB.GJ
APEXMalicious
ClamAVWin.Dropper.Agent-36328
KasperskyTrojan.Win32.VB.bbhv
BitDefenderGen:Variant.Ser.Zusy.2197
NANO-AntivirusTrojan.Win32.VB.cmtiul
MicroWorld-eScanGen:Variant.Ser.Zusy.2197
AvastJS:Downloader-BLF [Trj]
TACHYONTrojan/W32.VB-Agent.73728.LG
EmsisoftGen:Variant.Ser.Zusy.2197 (B)
BaiduWin32.Worm.AutoRun.cj
F-SecureWorm:W32/Vinkus.gen!A
DrWebTrojan.MulDrop.39230
VIPREGen:Variant.Ser.Zusy.2197
TrendMicroWORM_VBNA.SM
McAfee-GW-EditionBehavesLike.Win32.Generic.lt
Trapminemalicious.high.ml.score
SophosMal/AutoRun-J
IkarusWorm.Win32.Vobfus
GDataGen:Variant.Ser.Zusy.2197
AviraWORM/VBNA.JDX
Antiy-AVLWorm/Win32.VBNA.a
XcitiumWorm.Win32.VBNA.~gen@1qlvkj
ArcabitTrojan.Ser.Zusy.D895
SUPERAntiSpywareTrojan.Agent/Gen-FakeAlert
ZoneAlarmTrojan.Win32.VB.bbhv
MicrosoftWorm:Win32/Vobfus.F
GoogleDetected
AhnLab-V3Win32/Vbna4.worm.Gen
Acronissuspicious
McAfeeVBObfus
MAXmalware (ai score=84)
VBA32SScope.Trojan.VB.Svchorse.026
MalwarebytesMalware.AI.4046990504
PandaW32/Autorun.JKS
ZonerTrojan.Win32.123939
TrendMicro-HouseCallWORM_VBNA.SM
RisingTrojan.Autorun!1.DA78 (CLASSIC)
YandexTrojan.GenAsa!Nmq1GgqIrOs
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/VBNA.D!tr
AVGJS:Downloader-BLF [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.4046990504?

Malware.AI.4046990504 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment