Malware

Malware.AI.4048995616 removal instruction

Malware Removal

The Malware.AI.4048995616 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4048995616 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Malware.AI.4048995616?


File Info:

name: 53EBD2DEF610E3749648.mlw
path: /opt/CAPEv2/storage/binaries/6d1dddd51463d3d001a2684ec89872d4cf6f4aa522c36d9013081f029261e2a5
crc32: 54B79236
md5: 53ebd2def610e3749648817e9cc4b5a3
sha1: 37487ab86e2a68c4a7a6a669fd5779a172e24179
sha256: 6d1dddd51463d3d001a2684ec89872d4cf6f4aa522c36d9013081f029261e2a5
sha512: 8ee0aa8a7ea0bb21ae6a9edcd588d30c117624110f7d26c578576f6ea8d7f8206db62c6b1a33915aa4792fdd19e41623662f5afc617d9b71ed1970fd991ea4b3
ssdeep: 384:qsMT2LlUSUqOJWHRRJQkN7HWm0wFYVUO4XIZfffWXeAaSnx4+cLJbkiu+sRO+V+W:AzSnq+caYOjd0e
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T114D2E614BAB89F33C43E8BF75CE2425003F6E6474866EB4E0CCA25CB5A927494641FD7
sha3_384: 24d247d6a520af7d2c56aa4d5b35cd0901882fb4eae519d8099c288d5833559a6b399d70f52ff6ba786bdfc5c8286f98
ep_bytes: ff250020400000000000000000000000
timestamp: 2078-05-05 12:41:41

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: ml
FileVersion: 1.0.0.0
InternalName: ml.exe
LegalCopyright: Copyright © 2022
LegalTrademarks:
OriginalFilename: ml.exe
ProductName: ml
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.4048995616 also known as:

LionicTrojan.MSIL.Borlox.d!c
MicroWorld-eScanTrojan.GenericKD.48095030
FireEyeGeneric.mg.53ebd2def610e374
CAT-QuickHealTrojanGameThief.MSIL
ALYacTrojan.GenericKD.48095030
CylanceUnsafe
ZillyaTrojan.OnLineGames.Win32.246300
SangforTrojan.MSIL.Borlox.gen
K7AntiVirusPassword-Stealer ( 0058d6d81 )
K7GWPassword-Stealer ( 0058d6d81 )
Cybereasonmalicious.86e2a6
BitDefenderThetaGen:NN.ZemsilF.34212.bm0@aKqDQhd
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/PSW.OnLineGames.CDQ
TrendMicro-HouseCallTROJ_GEN.R002C0WAS22
KasperskyHEUR:Trojan-GameThief.MSIL.Borlox.gen
BitDefenderTrojan.GenericKD.48095030
AvastWin32:Trojan-gen
TencentMsil.Trojan-gamethief.Borlox.Sxex
Ad-AwareTrojan.GenericKD.48095030
EmsisoftTrojan.GenericKD.48095030 (B)
F-SecureTrojan.TR/PSW.OnlineGames.aviyk
TrendMicroTROJ_GEN.R002C0WAS22
McAfee-GW-EditionArtemis
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
GDataTrojan.GenericKD.48095030
AviraTR/PSW.OnlineGames.aviyk
Antiy-AVLTrojan[PSW]/MSIL.OnLineGames
GridinsoftRansom.Win32.Wacatac.sa
ArcabitTrojan.Generic.D2DDDF36
ZoneAlarmHEUR:Trojan-GameThief.MSIL.Borlox.gen
MicrosoftTrojan:Win32/Tiggre!rfn
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C4934397
McAfeeArtemis!53EBD2DEF610
MAXmalware (ai score=84)
MalwarebytesMalware.AI.4048995616
APEXMalicious
RisingTrojan.Generic/MSIL@AI.92 (RDM.MSIL:hNNgYCL5YRm+qlSbmU6YmQ)
YandexTrojan.PWS.OnLineGames!4T+OgHz3AcI
IkarusTrojan.IL.MSILZilla
FortinetMalicious_Behavior.SB
AVGWin32:Trojan-gen
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)
MaxSecureTrojan.Malware.119572466.susgen

How to remove Malware.AI.4048995616?

Malware.AI.4048995616 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment