Malware

About “Malware.AI.4048808870” infection

Malware Removal

The Malware.AI.4048808870 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4048808870 virus can do?

  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Dynamic (imported) function loading detected
  • Enumerates running processes
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

How to determine Malware.AI.4048808870?


File Info:

name: CC0AB84837F36CC20793.mlw
path: /opt/CAPEv2/storage/binaries/9709267ddad7d4d3594fdfd136b02a19869a0293708f29d4f14287c106663562
crc32: A7092A87
md5: cc0ab84837f36cc207939432946ab60f
sha1: ca8f74a9edc1b9f35700826e2c5e9c9e2ba70333
sha256: 9709267ddad7d4d3594fdfd136b02a19869a0293708f29d4f14287c106663562
sha512: 19e56f5157c738e69595c7f850cd49e77b9b30e2e5041c8c21f352ee08ea9c6df1dc05af42a1691b8b6f21d83712d824e55d554fbc4e3b31760f82f2dfecb2e2
ssdeep: 12288:DjaS6I09xHimymMIlM05SN7ziPGyaj8buvcA3VlnTEUJfYqOWM:DjaPFimnyFp8bfSVlnTTpYt
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A7D4235572810E27F4A96E31293BC379FAFE8D80137CA52B6F703ABF5D936924C21641
sha3_384: 8f1bd708044e09940477eecc8fb692440b3c13208716f97e7bf10538c65e10b1f574e546946ad1add8e5579e9ba59f0c
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-12-05 22:50:52

Version Info:

0: [No Data]

Malware.AI.4048808870 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanAdware.GenericKD.4656514
FireEyeAdware.GenericKD.4656514
ALYacAdware.GenericKD.4656514
CylanceUnsafe
ZillyaDownloader.Swizzor.Win32.32116
SangforTrojan.Win32.FakeAV.atCRS
AlibabaAdWare:Win32/Nieguide.90347a56
Cybereasonmalicious.837f36
VirITAdware.Win32.Generic4.BGUV
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Adware.Nieguide.AA
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Dropper.LokiBot-9869685-0
BitDefenderAdware.GenericKD.4656514
NANO-AntivirusTrojan.Win32.FraudPack.ccxsi
AvastWin32:FakeAV-CRS [Trj]
RisingTrojan.Danginex!8.318 (CLOUD)
ComodoApplicUnwnt@#1ro3e94hwwnf8
DrWebTrojan.Adkor.303
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_FRS.0NA103BL20
McAfee-GW-EditionBehavesLike.Win32.VBObfus.jc
EmsisoftAdware.GenericKD.4656514 (B)
GDataAdware.GenericKD.4656514
WebrootW32.Malware.Gen
AviraTR/Drop.FraudPack.A
Antiy-AVLTrojan/Generic.ASMalwNS.F7
KingsoftWin32.Troj.Generic.(kcloud)
GridinsoftRansom.Win32.Occamy.sa
ViRobotTrojan.Win32.FraudPack.641716
MicrosoftTrojan:Win32/Occamy.C97
CynetMalicious (score: 99)
McAfeeArtemis!CC0AB84837F3
MAXmalware (ai score=98)
VBA32Win32.Malware.Dropper.Heur
MalwarebytesMalware.AI.4048808870
TrendMicro-HouseCallTROJ_FRS.0NA103BL20
TencentWin32.Trojan.Generic.Sxxy
YandexTrojan.GenAsa!RzCLvFxpi00
FortinetRiskware/PUP_z
AVGWin32:FakeAV-CRS [Trj]

How to remove Malware.AI.4048808870?

Malware.AI.4048808870 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment