Malware

Malware.AI.4140547113 malicious file

Malware Removal

The Malware.AI.4140547113 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4140547113 virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Enumerates running processes
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.4140547113?


File Info:

name: 0B53AAAD4430DEC5BE6D.mlw
path: /opt/CAPEv2/storage/binaries/75dda41b67e77e3bc10d83bfcbe72a106cb937f864d78bbe1897e05ef9d51598
crc32: F9C59839
md5: 0b53aaad4430dec5be6d233515dbaff7
sha1: 329dcb28756fac73128a41b1591779e47f886775
sha256: 75dda41b67e77e3bc10d83bfcbe72a106cb937f864d78bbe1897e05ef9d51598
sha512: 4bf84c5e3faae638817b8c9cb8cad29c387384fcb8e3c43e37dbb1da74ecd58a05ddc809ee0b8f6b060dcfa7b33a9293d81d01de38ef4c1b8c313d37fd48f088
ssdeep: 12288:mOKDbnoebCRrJf1qNu/rAKwZxYJ/ug2kPZ41W/sfPl3eL5V5:mVHZyrJfg4/WUdv2kPZ48mFeV
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C5254B27F2904437D07E16798CDB5B95D92EBE002DEC980A7BE43E4C8F39681BD25297
sha3_384: 7cf2fad4f18340b3d0a3391170df7aa6d4ac0b5aa5e719f5827cec4fb27f808d3ed05a2539670d05e45ebdc04ffb93f9
ep_bytes: 558bec83c4f0b8945b4b00e82409f5ff
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Malware.AI.4140547113 also known as:

LionicTrojan.Win32.Zusy.4!c
McAfeeGenericRXRH-UC!0B53AAAD4430
CylanceUnsafe
ZillyaTrojan.Delf.Win32.140978
K7AntiVirusTrojan ( 0058c8601 )
BitDefenderGen:Variant.Zusy.412195
K7GWTrojan ( 0058c8601 )
CrowdStrikewin/malicious_confidence_70% (W)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Delf.USY
APEXMalicious
AlibabaTrojan:Win32/Generic.01b86268
MicroWorld-eScanGen:Variant.Zusy.412195
AvastWin32:Trojan-gen
Ad-AwareGen:Variant.Zusy.412195
EmsisoftGen:Variant.Zusy.412195 (B)
TrendMicroTROJ_GEN.R03BC0PAL22
McAfee-GW-EditionGenericRXRH-UC!0B53AAAD4430
FireEyeGen:Variant.Zusy.412195
SophosMal/Generic-S
IkarusTrojan.Win32.Delf
GDataGen:Variant.Zusy.412195
MAXmalware (ai score=80)
Antiy-AVLTrojan/Generic.ASMalwS.350EBA6
ArcabitTrojan.Zusy.D64A23
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Trojan/Win.UC.C4923383
ALYacGen:Variant.Zusy.412195
MalwarebytesMalware.AI.4140547113
TrendMicro-HouseCallTROJ_GEN.R03BC0PAL22
RisingStealer.QQpass!1.DB54 (CLOUD)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.139023860.susgen
FortinetW32/Delf.USY!tr
BitDefenderThetaGen:NN.ZelphiCO.34182.7GW@aCeldGhb
AVGWin32:Trojan-gen

How to remove Malware.AI.4140547113?

Malware.AI.4140547113 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment