Malware

How to remove “Malware.AI.4050810350”?

Malware Removal

The Malware.AI.4050810350 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4050810350 virus can do?

  • Executable code extraction
  • At least one process apparently crashed during execution
  • Creates RWX memory
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Deletes its original binary from disk
  • Installs itself for autorun at Windows startup
  • Checks the CPU name from registry, possibly for anti-virtualization
  • Creates a copy of itself

Related domains:

r.pengyou.com

How to determine Malware.AI.4050810350?


File Info:

crc32: A15C52EC
md5: da6527574d980a20a7d001df79a87f70
name: DA6527574D980A20A7D001DF79A87F70.mlw
sha1: 7ef230186035b7adedb30dd5104f9f145ba93cfb
sha256: 213a57262ac3813bdf3f0e2e22206c6cde7315b50fa6f32e4334a595768c0e35
sha512: 85357e02f01b2eb62a79c441232aa3043d4b0d6fb32dc25a5d8c0455163f97f806b3e8094b023bd63ef61f0eaff302e805826bf91b578c3b218801c13342961a
ssdeep: 12288:JzV5R0fR/fPstxRyUJtTpMSNbOnBrjscRJOD78YI6JFia:J7if5PUx/tdZbaJKn/JFj
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.4050810350 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 00520ef21 )
LionicTrojan.Win32.Agent.b!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader26.2874
CynetMalicious (score: 99)
ALYacGen:Variant.Graftor.452174
CylanceUnsafe
ZillyaDropper.Agent.Win32.283611
SangforTrojan.Win32.Agent.bjtqqs
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaTrojanDropper:Win32/Skeeyah.53e4b8c9
K7GWTrojan ( 00520ef21 )
Cybereasonmalicious.74d980
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.BJCW
APEXMalicious
AvastWin32:RATX-gen [Trj]
KasperskyTrojan-Dropper.Win32.Agent.bjtqqs
BitDefenderGen:Variant.Graftor.452174
NANO-AntivirusTrojan.Win32.PcClient.eweksf
MicroWorld-eScanGen:Variant.Graftor.452174
TencentMalware.Win32.Gencirc.10ba886d
Ad-AwareGen:Variant.Graftor.452174
SophosMal/Generic-S
ComodoMalware@#2tqbvdba52ts0
BitDefenderThetaGen:NN.ZexaF.34294.2uW@aCw@G5hb
VIPRETrojan.Win32.Generic!BT
TrendMicroBackdoor.Win32.ZEGOST.SMQ1
McAfee-GW-EditionRDN/Generic Dropper
FireEyeGeneric.mg.da6527574d980a20
EmsisoftGen:Variant.Graftor.452174 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojanDropper.Agent.cidt
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1112226
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.23872C0
KingsoftWin32.Troj.Agent.(kcloud)
MicrosoftTrojan:Win32/Skeeyah.A!bit
ArcabitTrojan.Graftor.D6E64E
GDataGen:Variant.Graftor.452174
AhnLab-V3Dropper/Win32.Agent.C2309387
McAfeeRDN/Generic Dropper
MAXmalware (ai score=99)
VBA32TrojanDropper.Agent
MalwarebytesMalware.AI.4050810350
PandaTrj/GdSda.A
TrendMicro-HouseCallBackdoor.Win32.ZEGOST.SMQ1
RisingTrojan.Generic@ML.100 (RDML:uJXcL1i6b7uj2l4n271QUQ)
YandexTrojan.GenAsa!YsqaFYuVHRA
IkarusTrojan.Win32.Krypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.BJCW!tr
AVGWin32:RATX-gen [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.4050810350?

Malware.AI.4050810350 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment