Malware

Malware.AI.4072352096 removal tips

Malware Removal

The Malware.AI.4072352096 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4072352096 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (3 unique times)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Uses Windows utilities for basic functionality
  • Sniffs keystrokes
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself

Related domains:

longlyjack.ddns.net

How to determine Malware.AI.4072352096?


File Info:

crc32: BD95858D
md5: 00eef42077aab0e0b4b8d62c66987620
name: 00EEF42077AAB0E0B4B8D62C66987620.mlw
sha1: 46023f784718ba49221471591c7ec47646d879bd
sha256: ab5acb787f5f14400ccafa7e476041c672c5858e5164fcc6c4528f232bb2ad22
sha512: 436ff83159ba21302e75b13b3dbe2bef8611465bfbea8c3d4dd1844ae2d1225b5802d05a95e513116c9d6da3544fbcf087f0ec5b728d143d55464b9e63f88a31
ssdeep: 3072:qPI4araBpgmFtWY0GP3Jk0viJQq3s7ODuXzBgSfOc4t+wvhSXC:qQ47BppWpWdiJQsMObSf0YwJSX
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Malware.AI.4072352096 also known as:

BkavW32.MosquitoQKK.Fam.Trojan
K7AntiVirusRiskware ( 0040eff71 )
DrWebTrojan.Siggen13.11510
CynetMalicious (score: 100)
ALYacGen:Variant.Razy.731696
CylanceUnsafe
ZillyaBackdoor.Farfli.Win32.11227
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.077aab
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:MiscX-gen [PUP]
ClamAVWin.Dropper.Gh0stRAT-9792933-0
KasperskyHEUR:Backdoor.Win32.Generic
BitDefenderGen:Variant.Razy.731696
NANO-AntivirusTrojan.Win32.Etap.iujfvz
MicroWorld-eScanGen:Variant.Razy.731696
Ad-AwareGen:Variant.Razy.731696
SophosGeneric ML PUA (PUA)
BitDefenderThetaGen:NN.ZexaF.34170.kmGfaOJgTegj
McAfee-GW-EditionBehavesLike.Win32.PolyPatch.cc
FireEyeGeneric.mg.00eef42077aab0e0
EmsisoftGen:Variant.Razy.731696 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDownloader.Generic.bjlu
eGambitUnsafe.AI_Score_98%
Antiy-AVLTrojan/Generic.ASMalwS.32AB3B0
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Razy.731696
TACHYONTrojan-Downloader/W32.Agent.643072.Y
AhnLab-V3Malware/Win.Generic.C4523349
McAfeeArtemis!00EEF42077AA
MAXmalware (ai score=84)
VBA32Trojan.Glupteba
MalwarebytesMalware.AI.4072352096
TrendMicro-HouseCallTROJ_GEN.R005H07GS21
YandexTrojan.GenAsa!el1hoD99IQQ
IkarusTrojan-Downloader.Win32.Small
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/Application
AVGWin32:MiscX-gen [PUP]

How to remove Malware.AI.4072352096?

Malware.AI.4072352096 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment