Malware

About “Malware.AI.4068959004” infection

Malware Removal

The Malware.AI.4068959004 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4068959004 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.4068959004?


File Info:

name: 35EAAFD53F4C60879A97.mlw
path: /opt/CAPEv2/storage/binaries/7b02a305a66748a3dff2f2d4e0bbd1df3d79b821a0021086b96dae9dc22fc14b
crc32: DD171378
md5: 35eaafd53f4c60879a976dbbe494a26a
sha1: 3bd70742b94ef984b11bdb772e4ba360cdc5e8d0
sha256: 7b02a305a66748a3dff2f2d4e0bbd1df3d79b821a0021086b96dae9dc22fc14b
sha512: 0ed95d4400ae97b953d8d8bfd2ee2a2f456714b67952b5ad26f71f4ba4bbb18b1328ce4608e9ce79e510f91f439797149791c62f066d4fe39f5a8825247d7d11
ssdeep: 12288:u2nS4EYAKAhGdZD2RmMgKx+GzOtQpL9jqDxntQ3Wzu+0zNEY:ugrlNgmBqEQpL9jOn63yuRN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F7C4238B99524658DE0E5830F3AE64E16248A323C7FF0626891AA1D33D35BD7F1D6DC2
sha3_384: 3d26dd434487db0a2a0aa77edfeb96b020cbc2fb512dbb0ab1db8c4a1142047119ea851ee7dac1c71d5121368121a5c3
ep_bytes: 60be004044008dbe00d0fbff57eb0b90
timestamp: 2007-12-11 23:17:52

Version Info:

0: [No Data]

Malware.AI.4068959004 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (moderate confidence)
FireEyeGeneric.mg.35eaafd53f4c6087
CAT-QuickHealTrojan.GenericIH.S11460785
McAfeeArtemis!35EAAFD53F4C
MalwarebytesMalware.AI.4068959004
ZillyaTrojan.Swizzor.Win32.160028
K7AntiVirusRiskware ( 00584baa1 )
K7GWRiskware ( 00584baa1 )
Cybereasonmalicious.2b94ef
SymantecML.Attribute.HighConfidence
CynetMalicious (score: 100)
McAfee-GW-EditionBehavesLike.Win32.Generic.hc
Trapminesuspicious.low.ml.score
Antiy-AVLTrojan/Win32.TSGeneric
Kingsoftmalware.kb.b.886
MicrosoftPUA:Win32/Presenoker
VBA32Trojan.Swizzor
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002H06EA23
RisingPUA.Presenoker!8.F608 (CLOUD)
YandexTrojan.GenAsa!a6tT3JyIj90
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Malware.AI.4068959004?

Malware.AI.4068959004 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment