Malware

What is “Malware.AI.4088935765”?

Malware Removal

The Malware.AI.4088935765 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4088935765 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Sample contains Overlay data
  • Possible date expiration check, exits too soon after checking local time
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality

How to determine Malware.AI.4088935765?


File Info:

name: 9EE2A3FB554DF5461C87.mlw
path: /opt/CAPEv2/storage/binaries/004a8fdc3ab402dbced63ccccb8708440517a86296680d929be6bc43ef14f09d
crc32: F3D825B6
md5: 9ee2a3fb554df5461c87623278b02d16
sha1: eeff914cbb255be30b04d0016ae0a82e5eac53ce
sha256: 004a8fdc3ab402dbced63ccccb8708440517a86296680d929be6bc43ef14f09d
sha512: 42540fc9c50f660dd3eee528fda179d959fdc389943af51cc9ca3169eab4f0ea426337e2c08c0a174d328a7ba81e55a7c651568cb9298caa65da9c1c2b8d0d0e
ssdeep: 768:+ktyCV6LPtTfC4P8A/zgFkX/cIhuVdiB9Iy9MLhIWzCoAXig59f:FPELlHbgFo/9QQ9aRCokl
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1A44339173CAE8872D84044B04DEE8BB15ABE6E533443609BEF207E5DDDB4324DA1677A
sha3_384: 70ddaf8256b91f4529dffc061c6818686d95155cc257d438be6416797bb92834662def6dafbd7743b07a45ddba3e87c3
ep_bytes: 558bec6aff6800a14000688453400064
timestamp: 2009-10-20 16:44:43

Version Info:

0: [No Data]

Malware.AI.4088935765 also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (moderate confidence)
MicroWorld-eScanTrojan.GenericKD.43680975
FireEyeTrojan.GenericKD.43680975
McAfeeGenericRXAR-YA!9EE2A3FB554D
CylanceUnsafe
VIPRETrojan.GenericKD.43680975
SangforTrojan.Win32.Generik.IYSCYPY
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.IYSCYPY
Paloaltogeneric.ml
BitDefenderTrojan.GenericKD.43680975
NANO-AntivirusTrojan.Win32.Inject.ekbdin
AvastWin32:Malware-gen
RisingTrojan.Undefined!8.1327C (CLOUD)
Ad-AwareTrojan.GenericKD.43680975
EmsisoftTrojan.GenericKD.43680975 (B)
ComodoMalware@#yinw9rjjveh
DrWebTrojan.Inject2.35093
TrendMicroTROJ_GEN.R002C0PDS22
McAfee-GW-EditionGenericRXAR-YA!9EE2A3FB554D
SophosMal/Generic-S
GDataTrojan.GenericKD.43680975
JiangminTrojan/BAT.ao
MAXmalware (ai score=100)
Antiy-AVLTrojan/Generic.ASMalwS.295C
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Malware/Win32.Generic.C2114524
BitDefenderThetaGen:NN.ZexaF.34582.dqX@ain9Yedi
ALYacTrojan.GenericKD.43680975
MalwarebytesMalware.AI.4088935765
TrendMicro-HouseCallTROJ_GEN.R002C0PDS22
YandexTrojan.GenAsa!ovLD+Br3mGs
IkarusTrojan.Agent2
MaxSecureTrojan.Malware.119760200.susgen
FortinetPossibleThreat
AVGWin32:Malware-gen
PandaTrj/Chgt.AD

How to remove Malware.AI.4088935765?

Malware.AI.4088935765 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment