Malware

Malware.AI.4121971103 removal tips

Malware Removal

The Malware.AI.4121971103 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4121971103 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Checks the CPU name from registry, possibly for anti-virtualization
  • Attempted to write directly to a physical drive
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.4121971103?


File Info:

name: A6F57A644E92CA54BF2F.mlw
path: /opt/CAPEv2/storage/binaries/f428cca7a5dc915345a139494824b72ab91483ffd911aa52f9cc53886bc2f1b1
crc32: 56C93E8B
md5: a6f57a644e92ca54bf2f92f1da38700e
sha1: 95c65f37ac1a2d7bcca1d82043669b04e3cd4e43
sha256: f428cca7a5dc915345a139494824b72ab91483ffd911aa52f9cc53886bc2f1b1
sha512: c8b92ce932df91403a878b971a5912a3e4ba03423e6ca642f04f72608e131f5f5c2b2d0e66420151cad6815dbac2d010bead5a90268ffd85785d83ec912e107b
ssdeep: 49152:cnm9i0+ezW4XdZLsV3r7xI2dreGUgzAGMipYQvMiQX7:cYLS4N1K3r7xI+yIjMiuQk5
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1DCA52327A5C1C579D1F10A7CDD2A21F65863BE82ED380E1B63E93D487B3C3A2571819B
sha3_384: d68bab69012878c2c620b6aaa52da7da903bb919067e961ac52454b84c59d57eb6db676825df1331b80494b0a22a8b47
ep_bytes: 558becb9120000006a006a004975f951
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Malware.AI.4121971103 also known as:

LionicTrojan.Win32.Generic.4!c
tehtrisGeneric.Malware
SkyhighBehavesLike.Win32.Generic.vc
Cylanceunsafe
Elasticmalicious (moderate confidence)
APEXMalicious
CynetMalicious (score: 99)
F-SecureDropper.DR/Delphi.Gen
SophosGeneric ML PUA (PUA)
AviraDR/Delphi.Gen
Antiy-AVLGrayWare/Win32.Wacapew
McAfeeArtemis!A6F57A644E92
MalwarebytesMalware.AI.4121971103
RisingTrojan.Generic@AI.82 (RDML:5gmHRWz9SjOnL33ugZD62w)
MaxSecureTrojan.Malware.3411146.susgen
FortinetW32/PossibleThreat

How to remove Malware.AI.4121971103?

Malware.AI.4121971103 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment