Malware

Malware.AI.4064637196 removal instruction

Malware Removal

The Malware.AI.4064637196 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4064637196 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.AI.4064637196?


File Info:

name: F444038B88195EE880D4.mlw
path: /opt/CAPEv2/storage/binaries/6a0030866686d78a6ca790947809b10d7c6bf9eec0e294446b7b77381c79a3e3
crc32: 85A98D4D
md5: f444038b88195ee880d4fb9b1e9989e4
sha1: 0971a52e4a200dab1fe841e128354f779144c696
sha256: 6a0030866686d78a6ca790947809b10d7c6bf9eec0e294446b7b77381c79a3e3
sha512: 0f86c02a1d577dd976c4e8c4b39cde06faf4ee345d015be86eb27b8674ce35dd46dd00f35311b528bd3513d7d41bb07cb0f46dcaa886471bea8d27518779ad55
ssdeep: 49152:3eurcTq24GjdGSgw+W7SC2nVQTEQLkjn3vr/n9tXhE:3eur9EjdGSbWtqyb9tXh
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B1C5F1BD36055901CF9E4BB080EB17AD51B08F67E1E38E65685439AC9B3A3D6C31B7C2
sha3_384: b949c582fc83388497309087ef33993970af832b23bcf83a55e0dc193a0a41250571a0aebaa5a3b4f1f5a3847485cda9
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-07-26 15:58:36

Version Info:

Translation: 0x0000 0x04b0
Comments: ExpressVpn secure vpn
CompanyName: ExpressVpn
FileDescription: ExpressVpn
FileVersion: 1.0.0.0
InternalName: stub.exe
LegalCopyright: Copyright ©
LegalTrademarks: ExpressVpn
OriginalFilename: stub.exe
ProductName: ExpressVpn
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.4064637196 also known as:

BkavW32.AIDetectNet.01
CynetMalicious (score: 99)
CylanceUnsafe
SangforSuspicious.Win32.Save.a
Cybereasonmalicious.e4a200
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Spy.Agent.CXJ
APEXMalicious
F-SecureHeuristic.HEUR/AGEN.1235691
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.f444038b88195ee8
SophosGeneric ML PUA (PUA)
AviraHEUR/AGEN.1235691
MicrosoftTrojan:Win32/Sabsik.EN.B!ml
Acronissuspicious
MalwarebytesMalware.AI.4064637196
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Generic.DN.13F0B2!tr
BitDefenderThetaGen:NN.ZemsilF.34806.Do0@aOLnm7j
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Malware.AI.4064637196?

Malware.AI.4064637196 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment