Malware

About “Malware.AI.4073766698” infection

Malware Removal

The Malware.AI.4073766698 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4073766698 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.4073766698?


File Info:

crc32: EEF17E67
md5: 193d431c3cbd0fe6ac7547d79e521099
name: 193D431C3CBD0FE6AC7547D79E521099.mlw
sha1: 1f872aa42bc88f9665d5b7f463a504782c169b27
sha256: 44300200b75c688bdc77f25e406d7a6ad1944fe6095d49ac49be3afab9251dc0
sha512: cc2677296e146460dd91702dc78542bd86c60d05b9c1ed4e2bff1bf7bdc8ed317ef0bbe3656ca190ba5e1f3c38f98af6348b4f1169c3327f1bea863a33ae0ed1
ssdeep: 96:eQ3R3QV290LCvZ/EJks01OU0uBX8PiHPzNt:f3RAVhpJks01guX8a5
type: PE32 executable (console) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 HP Inc. 2021
Assembly Version: 1.0.0.0
InternalName: meterpreter_framework.exe
FileVersion: 1.0.0.0
CompanyName: HP Inc.
LegalTrademarks:
Comments:
ProductName: meterpreter_framework
ProductVersion: 1.0.0.0
FileDescription: meterpreter_framework
OriginalFilename: meterpreter_framework.exe

Malware.AI.4073766698 also known as:

LionicTrojan.Win32.Malicious.4!c
Elasticmalicious (high confidence)
ALYacTrojan.GenericKD.36974115
CylanceUnsafe
ZillyaTrojan.Rozena.Win32.123338
SangforTrojan.Win32.Shelma.bjei
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:MSIL/Shelma.f8e3e7bb
K7GWTrojan ( 0055d0c21 )
K7AntiVirusTrojan ( 0055d0c21 )
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of MSIL/Rozena.DJ
AvastWin32:Trojan-gen
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Shelma.bjei
BitDefenderTrojan.GenericKD.36974115
MicroWorld-eScanTrojan.GenericKD.36974115
TencentWin32.Trojan.Shelma.Dxnh
Ad-AwareTrojan.GenericKD.36974115
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34796.am0@aG7kVUc
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojanSpy.MSIL.VIEMLOD.USMANES21
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.193d431c3cbd0fe6
EmsisoftTrojan.GenericKD.36974115 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1110055
Antiy-AVLTrojan/Generic.ASMalwS.333F3DE
MicrosoftVirTool:MSIL/Viemlod.gen!A
GDataTrojan.GenericKD.36974115
AhnLab-V3Trojan/Win.Viemlod.C4496568
McAfeeArtemis!193D431C3CBD
MAXmalware (ai score=88)
VBA32TScope.Trojan.MSIL
MalwarebytesMalware.AI.4073766698
PandaTrj/CI.A
TrendMicro-HouseCallTrojanSpy.MSIL.VIEMLOD.USMANES21
YandexTrojan.Shelma!dUz82Hs78qQ
IkarusTrojan.MSIL.Rozena
MaxSecureTrojan.Malware.73652210.susgen
FortinetMSIL/Rozena.N!tr
AVGWin32:Trojan-gen
Qihoo-360Win32/Ransom.DogHousePower.HgIASVcA

How to remove Malware.AI.4073766698?

Malware.AI.4073766698 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment