Malware

Malware.AI.4154973446 removal

Malware Removal

The Malware.AI.4154973446 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4154973446 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.4154973446?


File Info:

name: C4F4DFF6BB2300F7CE54.mlw
path: /opt/CAPEv2/storage/binaries/c79e91bec3cdf359ba88baccc6be62847da8842a8eef6eff3d1ced344826943b
crc32: 004BE7B7
md5: c4f4dff6bb2300f7ce5481e4491ddb1b
sha1: b27fff6dbd5c93896f134f5fd7bfdf7b36761190
sha256: c79e91bec3cdf359ba88baccc6be62847da8842a8eef6eff3d1ced344826943b
sha512: e58ad19ee8d069a95fa677f2dc65efab8b8ff98261ae0fc973fdcd4d0c23a19d7cd6d63748390226623efc0beb9757b96bc08cf63d1759be228bb578fd97f19f
ssdeep: 768:wZeM7FsbarLfq7E6qMHObvN1XJkYd03B12QOn3Mp2ADk/Fn/Hx/CfKhj9ZYFJ:EsS783HIV15kYd0x12QOcilxqfGTYF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14B23F1A23342C269D54A80BA360E6553663F1204DFAE93DC3DEE7759BCDFE042D14636
sha3_384: db748cc2a025bffca2705970a6603b76a78aee70d1a41ddc4a73e561e5c4f41b33c42b38fcb90a52de3da012d9396ccd
ep_bytes: 60be002041008dbe00f0feff5783cdff
timestamp: 2000-12-03 06:21:56

Version Info:

0: [No Data]

Malware.AI.4154973446 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.mBpr
MicroWorld-eScanDeepScan:Generic.Lmir.EF69ABFF
FireEyeGeneric.mg.c4f4dff6bb2300f7
SkyhighBehavesLike.Win32.Generic.pc
McAfeeArtemis!C4F4DFF6BB23
MalwarebytesMalware.AI.4154973446
VIPREDeepScan:Generic.Lmir.EF69ABFF
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderDeepScan:Generic.Lmir.EF69ABFF
K7GWPassword-Stealer ( 00007be91 )
K7AntiVirusPassword-Stealer ( 00007be91 )
BitDefenderThetaAI:Packer.0E2071B91E
SymantecInfostealer.Lemir.Gen
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/PSW.Legendmir
CynetMalicious (score: 100)
APEXMalicious
KasperskyTrojan-GameThief.Win32.Lmir.ug
AlibabaTrojanPSW:Win32/Frethog.6379e0fb
NANO-AntivirusTrojan.Win32.Lmir.fsaa
ViRobotTrojan.Win32.PSWLmir.84992.C[UPX]
RisingStealer.Frethog!1.6859 (CLOUD)
EmsisoftDeepScan:Generic.Lmir.EF69ABFF (B)
F-SecureTrojan.TR/ATRAPS.Gen
DrWebTrojan.PWS.Legmir.399
ZillyaTrojan.Lmir.Win32.4108
TrendMicroMal_Legmir2
Trapminesuspicious.low.ml.score
SophosMal/GamePSW-C
SentinelOneStatic AI – Suspicious PE
JiangminTrojan/PSW.Lmir.vm
WebrootW32.Downloader.Gen
VaristW32/Legendmir.SNQU-4687
AviraTR/ATRAPS.Gen
MAXmalware (ai score=100)
Antiy-AVLTrojan[GameThief]/Win32.Lmir
Kingsoftmalware.kb.b.980
MicrosoftTrojan:Win32/Vigorf.A
XcitiumTrojWare.Win32.PSW.Lmir.~GC@1a73t
ArcabitDeepScan:Generic.Lmir.EF69ABFF
ZoneAlarmTrojan-GameThief.Win32.Lmir.ug
GDataDeepScan:Generic.Lmir.EF69ABFF
GoogleDetected
AhnLab-V3Trojan/Win32.Lmirhack.C239084
ALYacDeepScan:Generic.Lmir.EF69ABFF
DeepInstinctMALICIOUS
VBA32TrojanPSW.Lmir
Cylanceunsafe
PandaTrj/Legmir.AJQ
TrendMicro-HouseCallMal_Legmir2
TencentMalware.Win32.Gencirc.13c12cad
YandexTrojan.PWS.Legendmir!cBHqRsvx5G8
IkarusTrojan-PWS.Win32.Lmir.ug
MaxSecureTrojan.Malware.1708096.susgen
FortinetW32/Lmir.UG!tr.pws
AVGWin32:Lmir-LI [Trj]
Cybereasonmalicious.dbd5c9
AvastWin32:Lmir-LI [Trj]

How to remove Malware.AI.4154973446?

Malware.AI.4154973446 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment