Malware

About “Malware.AI.4053160764” infection

Malware Removal

The Malware.AI.4053160764 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4053160764 virus can do?

  • Uses Windows utilities for basic functionality
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Uses suspicious command line tools or Windows utilities
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Malware.AI.4053160764?


File Info:

name: EE4886F7B0E87EDC6DD7.mlw
path: /opt/CAPEv2/storage/binaries/f9f3374d89baf1878854f1700c8d5a2e5cf40de36071d97c6b9ff6b55d837fca
crc32: D884A152
md5: ee4886f7b0e87edc6dd727ddfb012eb8
sha1: 92fe49f6a758492363215a58d62df701afb63f66
sha256: f9f3374d89baf1878854f1700c8d5a2e5cf40de36071d97c6b9ff6b55d837fca
sha512: 4d25fb3d5c3defa77631eeedfdf7e8fa79d7fd4801d8349ca244aa189ecc1650299c4013b85cc65adca2f3a9561c82bd051d8031f4cf0e8d6206bf67fa82e470
ssdeep: 3072:C0T8L5duTd81hFKg4VoiwYBIMhYnti6lV9CVfZ3toig:C0T8L5duTGFKgm9wYBd2iUifZ+B
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T125143A59BF8194F2E41305F80CEFA3AD1B7BA596873B66D3D78018225DA11F1E37A1C8
sha3_384: a10111f9e442a8d158b0d42a3e20c393d63d6fb49ec57f18bc6e177bec580c5da6d4b8ef7e84312c6a2afa3c27f047ee
ep_bytes: e8e8580000e916feffffcccccccccc8b
timestamp: 2001-01-01 02:03:19

Version Info:

CompanyName: Microsoft Corporation
FileDescription: System update center
FileVersion: 7,1
InternalName: Update center
LegalCopyright: Copyright (C) Microsoft Corp. 1981-2001
ProductName: Microsoft(R) Windows (R) 2000 Operating System
ProductVersion: 5, 2
Translation: 0x0409 0x04b0

Malware.AI.4053160764 also known as:

BkavW32.Common.4B11FD47
LionicTrojan.Win32.KillDisk.4!c
DrWebTrojan.Siggen7.8431
MicroWorld-eScanTrojan.Ransom.KillDisk.B
ClamAVWin.Trojan.KillDisk-3
FireEyeTrojan.Ransom.KillDisk.B
SkyhighBehavesLike.Win32.Generic.dh
McAfeeArtemis!EE4886F7B0E8
Cylanceunsafe
SangforTrojan.Win32.Killdisk.Vwnk
K7AntiVirusTrojan ( 005011611 )
AlibabaTrojan:Win32/KillDisk.84e0a24b
K7GWTrojan ( 005011611 )
BitDefenderThetaGen:NN.ZexaE.36744.mq0@aOfFzMni
SymantecTrojan.Disakil
Elasticmalicious (high confidence)
ESET-NOD32Win32/KillDisk.NBK
APEXMalicious
CynetMalicious (score: 99)
KasperskyTrojan.Win32.KillDisk.fx
BitDefenderTrojan.Ransom.KillDisk.B
NANO-AntivirusTrojan.Win32.KillDisk.ejwyhj
AvastWin32:Malware-gen
TencentMalware.Win32.Gencirc.10bb4aa8
EmsisoftTrojan.Ransom.KillDisk.B (B)
F-SecureTrojan.TR/KillDisk.nlhkc
VIPRETrojan.Ransom.KillDisk.B
TrendMicroTROJ_KILLDISK.ITZ
Trapminesuspicious.low.ml.score
SophosMal/Generic-R
IkarusTrojan-Ransom.KillDisk
GDataTrojan.Ransom.KillDisk.B
JiangminTrojan.KillDisk.t
WebrootW32.Trojan.Killdisk
GoogleDetected
AviraTR/KillDisk.nlhkc
Antiy-AVLTrojan/Win32.BTSGeneric
KingsoftWin32.Trojan.KillDisk.fx
XcitiumMalware@#osop9svcuoud
ArcabitTrojan.Ransom.KillDisk.B
ViRobotTrojan.Win32.KillDisk.204800
ZoneAlarmTrojan.Win32.KillDisk.fx
MicrosoftTrojan:Win32/Dynamer!ac
VaristW32/KillDisk.A!Eldorado
AhnLab-V3Trojan/Win32.KillDisk.C1737725
VBA32BScope.Trojan.KillDisk
ALYacTrojan.Ransom.KillDisk
MAXmalware (ai score=100)
MalwarebytesMalware.AI.4053160764
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_KILLDISK.ITZ
RisingTrojan.KillDisk!8.C4C (TFE:5:VXPyCQ7YebJ)
YandexTrojan.GenAsa!4kYWNNGQx7E
FortinetW32/Generic.AP.49AFC!tr
AVGWin32:Malware-gen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.4053160764?

Malware.AI.4053160764 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment