Malware

About “Malware.AI.4100688270” infection

Malware Removal

The Malware.AI.4100688270 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4100688270 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.4100688270?


File Info:

crc32: AA2E90AE
md5: d8f6cadd686aef1423100dae9231c47d
name: D8F6CADD686AEF1423100DAE9231C47D.mlw
sha1: af46bfe9e441788fff35ca3613a805c23780a9fd
sha256: 8e38c9ed504d812b26fa8f6c5217127fdfa945da4ac74ebedbade7287fafd062
sha512: 466e25ecd6e418ed9451b56a1d680531f7973f5c0b5622c606d9e3ec16d7deba6b9fbee7e01335ecdfecb8eb59e678eb2332a8d99133ea42834c535b486fefe1
ssdeep: 49152:Z6yxxxxxxxxxxxxxxxxxxxxxxxxx1xxx7UxxxxxxxxxluRSw:Z6mfh
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2021
Assembly Version: 1.0.0.0
InternalName: NECOLA.exe
FileVersion: 1.0.0.0
ProductName: NECOLA
ProductVersion: 1.0.0.0
FileDescription: NECOLA
OriginalFilename: NECOLA.exe

Malware.AI.4100688270 also known as:

LionicTrojan.MSIL.Bladabindi.m!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
CrowdStrikewin/malicious_confidence_70% (W)
AlibabaBackdoor:MSIL/Bladabindi.56cb92fa
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.YAK
APEXMalicious
AvastWin32:RATX-gen [Trj]
KasperskyHEUR:Backdoor.MSIL.Bladabindi.gen
BitDefenderTrojan.GenericKD.46935129
MicroWorld-eScanTrojan.GenericKD.46935129
TencentMsil.Backdoor.Bladabindi.Wvas
Ad-AwareTrojan.GenericKD.46935129
SophosMal/Generic-S
McAfee-GW-EditionArtemis!Trojan
FireEyeTrojan.GenericKD.46935129
EmsisoftTrojan.GenericKD.46935129 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1143772
MicrosoftTrojan:Script/Phonzy.A!ml
GDataMSIL.Backdoor.Bladabindi.OLI720
AhnLab-V3Malware/Win32.RL_Generic.C4225836
McAfeeArtemis!D8F6CADD686A
MAXmalware (ai score=88)
MalwarebytesMalware.AI.4100688270
PandaTrj/GdSda.A
IkarusGen.MSIL.Bladabindi
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Kryptik.YAK!tr
AVGWin32:RATX-gen [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.4100688270?

Malware.AI.4100688270 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment