Malware

What is “Malware.AI.4055231099”?

Malware Removal

The Malware.AI.4055231099 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4055231099 virus can do?

  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Reads data out of its own binary image
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Anomalous binary characteristics

Related domains:

www.baidu.mussic.com.moyan.cc

How to determine Malware.AI.4055231099?


File Info:

crc32: 90533A52
md5: f132087833d129ab676939e07147bc1c
name: F132087833D129AB676939E07147BC1C.mlw
sha1: 2a595d7e3461f87976b85f897b61cff8a3f8acd4
sha256: dcbb52c138278e5c56b90728aab02f64d19d0b3ffc99d167327dbb78ec63b54c
sha512: 9bb75b7421b73c5f07f4249c80db9c078c17b2a8cd177b684f3d3113f7cbdbe4461d1b203c9565cb4e951bd5893a48ad67cafed5063b73462373c9653561cdcf
ssdeep: 12288:JWLa8EQxnFNXDCPfMQBLWQMe+laZ+TmgZiQKjsxYHE2OgzrM:JNNQxFMHvLWQMe+50s+HnOg0
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: x7248x6743x6240x6709 (C) 2014
InternalName: mussic setup
OriginalFilename: mussic setup
ProductName: mussic
Translation: 0x0804 0x03a8

Malware.AI.4055231099 also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.31508129
FireEyeTrojan.GenericKD.31508129
ALYacTrojan.GenericKD.31508129
CylanceUnsafe
AegisLabTrojan.Multi.Generic.mnPU
SangforMalware
K7AntiVirusTrojan-Downloader ( 005192ed1 )
BitDefenderTrojan.GenericKD.31508129
K7GWTrojan-Downloader ( 005192ed1 )
Cybereasonmalicious.833d12
BaiduNSIS.Trojan-Downloader.Agent.i
CyrenW32/Trojan3.QYI
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.Agent.emloys
Ad-AwareTrojan.GenericKD.31508129
EmsisoftTrojan.GenericKD.31508129 (B)
F-SecureHeuristic.HEUR/AGEN.1113511
DrWebTrojan.DownLoader18.55257
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.BadFile.hc
SophosMal/Generic-S
AviraHEUR/AGEN.1113511
MAXmalware (ai score=87)
MicrosoftTrojan:Win32/Skeeyah.A!bit
ArcabitTrojan.Generic.D1E0C6A1
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.GenericKD.31508129
CynetMalicious (score: 85)
AhnLab-V3PUP/Win32.Downloader.R161900
McAfeeArtemis!F132087833D1
VBA32TrojanDownloader.Adload
MalwarebytesMalware.AI.4055231099
PandaTrj/CI.A
ESET-NOD32NSIS/TrojanDownloader.Agent.NRQ
TencentWin32.Adware.Moyan.Auto
SentinelOneStatic AI – Suspicious PE
FortinetW32/AgentNSIS.NRQ!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (D)
Qihoo-360Win32/Sorter.AutoVirus.NSISDownloader.A

How to remove Malware.AI.4055231099?

Malware.AI.4055231099 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment