Malware

What is “Malware.AI.4080296786”?

Malware Removal

The Malware.AI.4080296786 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4080296786 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.4080296786?


File Info:

name: 6CD59C86EA01AFDE58B5.mlw
path: /opt/CAPEv2/storage/binaries/305ae09b8151615601848a6caeae02a976701243a0cf217c75a3f0f8ee2aa911
crc32: 4A8397B0
md5: 6cd59c86ea01afde58b5d6e79ce86179
sha1: 37be2c33a0c27dfb87c660ce7a571e1f2c920ecc
sha256: 305ae09b8151615601848a6caeae02a976701243a0cf217c75a3f0f8ee2aa911
sha512: 388fee05d3877456fcde0fb00822c8b1641e29d2d3ee63d3af5c0c2d2f16c452aad776c6016964fd96bef5e7a24db8b9b9de8871f5aebfadd0c8958280f593f5
ssdeep: 6144:PYa61urNk02TWjxFt5WGqZRWyrjsBCRYz2usq5giMEOM1m3:PY3D042rWG8lrjsLyuHmF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C054125967D0E097F4B35F70CE7B4EB66EE9E91A1964CBDF03804B487E22A51E40D702
sha3_384: c8baece6ffdf4d6358cdc173a0c59b095ab8a8abcdc4125a881838b02ca8f976a2c1bcbf42d8a99c0ea12cc345732ac5
ep_bytes: 558bec81ecf40300005356576a205f33
timestamp: 2021-09-25 21:56:47

Version Info:

CompanyName: gloveress
FileDescription: Megatheriidae
FileVersion: 21.27.2.33
LegalCopyright: Copyright calycine
ProductName: 21.27.2.33
Translation: 0x0409 0x04b0

Malware.AI.4080296786 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Nemesis.4!c
MicroWorld-eScanTrojan.GenericKD.68755445
FireEyeGeneric.mg.6cd59c86ea01afde
ALYacTrojan.GenericKD.68755445
MalwarebytesMalware.AI.4080296786
SangforSuspicious.Win32.Save.ins
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojan:Win32/Strab.fa024c62
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.3a0c27
VirITTrojan.Win32.Genus.SVU
CyrenW32/Ninjector.JO.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.ETEY
ZonerTrojan.Win32.160388
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Strab.gen
BitDefenderTrojan.GenericKD.68755445
NANO-AntivirusTrojan.Win32.Strab.jylruj
AvastWin32:PWSX-gen [Trj]
RisingTrojan.Lokibot!8.F1B5 (TFE:5:Ack6AmNrwaU)
EmsisoftTrojan.GenericKD.68755445 (B)
F-SecureTrojan.TR/AD.GenShell.bnwoi
DrWebTrojan.Loader.1692
VIPRETrojan.GenericKD.68755445
TrendMicroTROJ_GEN.R002C0DHK23
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
Trapminemalicious.moderate.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
GDataTrojan.GenericKD.68755445
AviraTR/AD.GenShell.xduth
MAXmalware (ai score=87)
Antiy-AVLTrojan/Win32.Lokibot
XcitiumMalware@#akkz3tby3jdo
ArcabitTrojan.Generic.D4191FF5
ZoneAlarmHEUR:Trojan-Spy.Win32.Noon.gen
MicrosoftTrojan:Win32/Nemesis
GoogleDetected
AhnLab-V3Trojan/Win.NSISInject.R587856
McAfeeRDN/Generic PWS.y
VBA32Trojan.Strab
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0DHK23
TencentWin32.Trojan.Strab.Ychl
IkarusTrojan-Spy.Agent
FortinetNSIS/Agent.DCAC!tr
BitDefenderThetaGen:NN.ZedlaF.36662.au4@aWTAw1mi
AVGWin32:PWSX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.4080296786?

Malware.AI.4080296786 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment