Malware

Malware.AI.4074142947 removal

Malware Removal

The Malware.AI.4074142947 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4074142947 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process created a hidden window
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Deletes its original binary from disk
  • Creates a hidden or system file
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

How to determine Malware.AI.4074142947?


File Info:

crc32: E3AD7589
md5: 0f946ec3f7a39584c1953255da33aed5
name: 0F946EC3F7A39584C1953255DA33AED5.mlw
sha1: 08f57cefe719ee17bccc36bc465205d281e46805
sha256: 1a552e3367a4c80e7ffb16ed59d8748381c0dada8aeede9b137e72c895f0912d
sha512: c3ef482c118f89a85970f44e526928658c8b6b605326209bc91e20d51b4bd811c978a4b909eb922d703e74d291123922086ac3a7b974bf85b322375de7e5f8b3
ssdeep: 6144:PW2CVKRYwnmcXVW3iAAiTw8Rb/ghJYA8X6oe9:PW2IKRYWFGiAAGkYI9
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, PECompact2 compressed

Version Info:

0: [No Data]

Malware.AI.4074142947 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Agent.lpyI
DrWebTrojan.DownLoader1.46415
CynetMalicious (score: 100)
ALYacGen:Variant.Doina.23593
CylanceUnsafe
ZillyaTrojan.Bjlog.Win32.11541
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
Cybereasonmalicious.3f7a39
BaiduWin32.Trojan.Agent.du
CyrenW32/Plingky.A.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent.RZI
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Trojan.Agent-500557
KasperskyTrojan-PSW.Win32.Bjlog.dxuz
BitDefenderGen:Variant.Doina.23593
NANO-AntivirusTrojan.Win32.StartPage.bdtlsk
MicroWorld-eScanGen:Variant.Doina.23593
TencentMalware.Win32.Gencirc.114baee5
Ad-AwareGen:Variant.Doina.23593
SophosML/PE-A + Mal/Encpk-AHN
ComodoTrojWare.Win32.Agent.sgx@4i1tyd
VIPRETrojan-Downloader.Win32.Plingky.A (v)
TrendMicroTROJ_DROPR.SMIL
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
FireEyeGeneric.mg.0f946ec3f7a39584
EmsisoftGen:Variant.Doina.23593 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDownloader.Generic.coh
WebrootW32.Trojan.Gen
AviraTR/StartPage.akei
Antiy-AVLTrojan/Generic.ASMalwS.20D30D
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Doina.23593
AhnLab-V3Trojan/Win32.Agent.R1628
Acronissuspicious
McAfeeArtemis!0F946EC3F7A3
MAXmalware (ai score=85)
VBA32BScope.Trojan.Tiggre
MalwarebytesMalware.AI.4074142947
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_DROPR.SMIL
RisingDropper.Win32.StartPage.lj (CLASSIC)
YandexTrojan.DL.Agent!CYl7euwnRXU
IkarusTrojan-Downloader.Win32.Small
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Oficla.NK!tr
AVGWin32:Trojan-gen

How to remove Malware.AI.4074142947?

Malware.AI.4074142947 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment