Malware

Malware.AI.4146305762 malicious file

Malware Removal

The Malware.AI.4146305762 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4146305762 virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Executed a process and injected code into it, probably while unpacking
  • Sniffs keystrokes
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.4146305762?


File Info:

crc32: 766FE40D
md5: d95a38c000212ea76d88904cf58f37bd
name: D95A38C000212EA76D88904CF58F37BD.mlw
sha1: e9da88c08f3608b1aca4d8ab3e4984e21ae30b0d
sha256: 595422227d114b68f111edf0afd284aa39f0b7490a842df5492479a80028cefd
sha512: 28a9d48cec8f5a4758d100b44f85d2f14fd2764d1a3e553b7827265e11cb6f8b7a5edbd4eb4d0fcb33e3bd9f33f9c729426314662ac5f55a7d84017179d55d7d
ssdeep: 12288:4nwpqz1lKo5iQ2l9SRQapuCDNBEZcuM8IEwyV4q5ptG33Rx:ewpqzTf5iQ2l9SRQap7D5h8IEwy3vA3
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Malware.AI.4146305762 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0055e4091 )
Elasticmalicious (high confidence)
DrWebTrojan.Winlock.5774
CynetMalicious (score: 100)
ALYacGen:Variant.Symmi.78031
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7GWTrojan ( 0055e4091 )
Cybereasonmalicious.000212
ESET-NOD32Win32/LockScreen.YL
APEXMalicious
AvastFileRepMalware
ClamAVWin.Malware.Zbot-9868788-0
KasperskyTrojan-Ransom.Win32.Foreign.nyuj
BitDefenderGen:Variant.Symmi.78031
NANO-AntivirusTrojan.Win32.Gimemo.wuwqy
MicroWorld-eScanGen:Variant.Symmi.78031
TencentWin32.Trojan.Gimemo.deic
Ad-AwareGen:Variant.Symmi.78031
SophosMal/EncPk-AEM
ComodoMalware@#2dfuvyce29lh2
BitDefenderThetaGen:NN.ZelphiF.34088.JmGfaCyTPWg
VIPRETrojan.Win32.Generic.pak!cobra
McAfee-GW-EditionBehavesLike.Win32.Generic.hc
FireEyeGeneric.mg.d95a38c000212ea7
EmsisoftGen:Variant.Symmi.78031 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanSpy.Zbot.btez
WebrootW32.Trojan.Gen
AviraDR/Delphi.Gen
Antiy-AVLTrojan/Generic.ASMalwS.2EB8D3
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftRansom:Win32/LockScreen.AO
GDataGen:Variant.Symmi.78031
Acronissuspicious
McAfeeArtemis!D95A38C00021
MAXmalware (ai score=80)
VBA32TScope.Trojan.Delf
MalwarebytesMalware.AI.4146305762
PandaGeneric Malware
YandexTrojan.Gimemo!IWIIGAbJhxQ
IkarusTrojan-Ransom.Gimemo
FortinetW32/Injector.ZSE!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Malware.AI.4146305762?

Malware.AI.4146305762 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment