Malware

Malware.AI.4147015966 removal instruction

Malware Removal

The Malware.AI.4147015966 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4147015966 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Unconventionial binary language: Russian
  • Unconventionial language used in binary resources: Arabic (Saudi Arabia)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Malware.AI.4147015966?


File Info:

crc32: 18F14569
md5: fac739934483f4bb1b9806469f838c40
name: FAC739934483F4BB1B9806469F838C40.mlw
sha1: 70a54d47879c102d91648fd80b03262ffa9fc1fd
sha256: 1dc7fa1bb38551346552ed7edd4f719c340f35a704e14c0b04e5fc5e7abd0f76
sha512: 027e6cfd0b4c95a2447cc43226dc21f87eb7aa9ce431af839328bd09edbac80989156f89bd7965a95ca13190bebb3d4673ed0dc191c7e94cc11377843872892b
ssdeep: 12288:t8u+EyAkAAKRN4/oQkDkCaeXqUJ6FgPTLE:J+EGGN6oxQBcqOjP
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

ProductVersion: 15.1.1158.4
InternalName: NetFxRepair.dll
FileVersion: 15.1.1158.4
OriginalFilename: NetFxRepair.dll
FileDescription: Microsoft .NET Framework 4.5
Translation: 0x0419 0x04e3

Malware.AI.4147015966 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00539bec1 )
LionicTrojan.Win32.Ekstak.4!c
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Ekstak.S3698496
ALYacApplication.Bundler.ICLoader.5.Gen
CylanceUnsafe
ZillyaTrojan.GenericKD.Win32.138614
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaTrojan:Win32/Katusha.ac4db37f
K7GWTrojan ( 00539bec1 )
Cybereasonmalicious.34483f
CyrenW32/S-29ace38e!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GJNM
APEXMalicious
AvastWin32:ICLoader-X [Adw]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderApplication.Bundler.ICLoader.5.Gen
NANO-AntivirusTrojan.Win32.Katusha.iwtgan
MicroWorld-eScanApplication.Bundler.ICLoader.5.Gen
TencentMalware.Win32.Gencirc.10b587cd
Ad-AwareApplication.Bundler.ICLoader.5.Gen
SophosMal/Generic-S
ComodoApplication.Win32.ICLoader.GS@84429a
BitDefenderThetaGen:NN.ZexaF.34266.Gu0@ayV7QteO
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.hh
FireEyeGeneric.mg.fac739934483f4bb
EmsisoftApplication.Bundler.ICLoader.5.Gen (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Ekstak.ott
AviraTR/ICLoader.Gen8
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.272D93B
MicrosoftTrojan:Win32/Occamy.C
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
GDataWin32.Application.ICLoader.F
AhnLab-V3Trojan/Win32.Ekstak.R233682
McAfeePacked-FHK!FAC739934483
MAXmalware (ai score=100)
VBA32BScope.Trojan.Fuerboos
MalwarebytesMalware.AI.4147015966
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.AA23 (CLASSIC)
YandexTrojan.GenAsa!aoKdwQR10Kk
IkarusAdWare.ICLoader
FortinetW32/CoinMiner.GYQC!tr
AVGWin32:ICLoader-X [Adw]
Paloaltogeneric.ml

How to remove Malware.AI.4147015966?

Malware.AI.4147015966 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment