Malware

Malware.AI.4148812880 removal instruction

Malware Removal

The Malware.AI.4148812880 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4148812880 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Expresses interest in specific running processes
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Performs some HTTP requests
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

d10pjb24qif5b4.cloudfront.net
d350re0kebmye9.cloudfront.net

How to determine Malware.AI.4148812880?


File Info:

crc32: 28B28A11
md5: 25d845f9b6a3628dd516a4e0aced667e
name: 25D845F9B6A3628DD516A4E0ACED667E.mlw
sha1: c6ced88c6b1cab163d623a807c079d703d25fdce
sha256: 019cbe917c215792651d697898f6cbe84ff1731d0ecd1b3ae6e17de19cf87853
sha512: b2dadc4acd0c27f650d79b03258013f2e844508fc64a80c5501b7f3d5d634400966ff59e0627e29cb2a35f86ec195d1e5b9b69a4b139403b0e4be5025a8dada2
ssdeep: 24576:Pk+AwnE31t9NvwYr9y7em3ARkbLBsboHcxUpf0NfcyzSrjt5LaS:sDwE31t9NvwYRG7X3GbqcHzSfXH
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

FileVersion: 2.11.11010.794
ProductVersion: 2.11.11010.794
Translation: 0x0409 0x04e4

Malware.AI.4148812880 also known as:

LionicTrojan.Win32.Agent.b!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader17.11589
CynetMalicious (score: 100)
CylanceUnsafe
ZillyaDropper.Agent.Win32.273192
SangforTrojan.Win32.Agent.8
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/SpeedBit.adba3df4
ESET-NOD32a variant of Win32/SpeedBit.G potentially unwanted
APEXMalicious
AvastNSIS:Crossrider-Z [PUP]
KasperskyTrojan-Dropper.Win32.Agent.bjprhb
NANO-AntivirusTrojan.Nsis.Agent.dmgbnp
ViRobotTrojan.Win32.Z.Agent.1190305
TencentWin32.Trojan-dropper.Agent.Hssu
SophosGeneric ML PUA (PUA)
ComodoMalware@#33drxso6nxduo
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.25d845f9b6a3628d
SentinelOneStatic AI – Malicious PE
WebrootPua.Downloadmanager
AviraHEUR/AGEN.1129096
Antiy-AVLGrayWare[AdWare]/Win32.AGeneric
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
SUPERAntiSpywareTrojan.Agent/Gen-Dropper
GDataNSIS.Application.Crypted.C
AhnLab-V3PUP/Win32.CrossRider.R161183
McAfeeArtemis!25D845F9B6A3
MAXmalware (ai score=99)
VBA32TrojanDropper.Agent
MalwarebytesMalware.AI.4148812880
TrendMicro-HouseCallTROJ_GEN.R002H0CKF21
AVGNSIS:Crossrider-Z [PUP]
Paloaltogeneric.ml

How to remove Malware.AI.4148812880?

Malware.AI.4148812880 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment