Malware

Malware.AI.4058746332 (file analysis)

Malware Removal

The Malware.AI.4058746332 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4058746332 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Anomalous file deletion behavior detected (10+)
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

Related domains:

wpad.local-net

How to determine Malware.AI.4058746332?


File Info:

name: 6C8715DCB0057A3CA79B.mlw
path: /opt/CAPEv2/storage/binaries/7cb2d1f0ade05acc632885f0d1b6e1c28d6e5b68748ba0b363989790bb9395dd
crc32: 144FCDFA
md5: 6c8715dcb0057a3ca79be1e7575634b6
sha1: a7618ef8a03c74297f94c4b41e79c5131895494f
sha256: 7cb2d1f0ade05acc632885f0d1b6e1c28d6e5b68748ba0b363989790bb9395dd
sha512: 9699c8add294a4b921de22a58085d1629827dc6b738859239db5780f913d5704b777d2da700397e1e3e97ad213bfbdccf72df54e0c0c76fdd2141229db138245
ssdeep: 768:gh3T5cia/PtWyMqMtH5GB9AI04dNNWGXOz:ghD4tW5qE5GD58GG
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T127C2D707F34744F5E82341F00A8AB7BF8631D659A073C66CDB94DC2CAD678A2776D21A
sha3_384: cffb2bca8092b7fb685e18fd13f07e1ab10da84811996fefc53e4ab83526210f0dc5412e1d673a564ca3efccc73378ae
ep_bytes: 5589e583ec08c7042402000000ff15dc
timestamp: 2009-02-05 21:15:04

Version Info:

CompanyName:
FileDescription:
FileVersion: 1,0,0,0
LegalCopyright: PytonB!tch
Translation: 0x0000 0x0000

Malware.AI.4058746332 also known as:

CAT-QuickHealTrojan.GenericPMF.S1625602
MalwarebytesMalware.AI.4058746332
SymantecML.Attribute.HighConfidence
APEXMalicious
RisingTrojan.Win32.Agent.a (CLASSIC)
ComodoTrojWare.Win32.TrojanDropper.Agent.a@7fhmg
JiangminTrojan/BAT.KillWin.a
AviraHEUR/AGEN.1130235
Antiy-AVLTrojan/Generic.ASMalwS.1B8DD6
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 99)
CylanceUnsafe
YandexTrojan.GenAsa!Q+O4UmmrDn8
FortinetW32/KillWin.BQ!tr
BitDefenderThetaGen:NN.ZexaCO.34294.by0@ae3o9CB

How to remove Malware.AI.4058746332?

Malware.AI.4058746332 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment