Malware

Malware.AI.4156281360 information

Malware Removal

The Malware.AI.4156281360 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4156281360 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • Attempts to disable Windows Auto Updates
  • Attempts to modify Explorer settings to prevent hidden files from being displayed

How to determine Malware.AI.4156281360?


File Info:

name: 26FE301A38F6FFD25EFD.mlw
path: /opt/CAPEv2/storage/binaries/9b58f351f46acbe0b0bf45351ac40d436bea848205dc6d499a81700c31729a81
crc32: 8D148CEF
md5: 26fe301a38f6ffd25efd9d8acde3e3ae
sha1: 65ecfa75e94db22fb13107d88a9adc5076624f5c
sha256: 9b58f351f46acbe0b0bf45351ac40d436bea848205dc6d499a81700c31729a81
sha512: a9b6895be35fb7d3635c22e6246ff9e29ebce43445948373ba504bf84b41b27a5e90dad134555bb12dd17000af19edb4a83b572a5c4de2700ab3a2389c9fa47d
ssdeep: 1536:livEg52649tyVQO8P8ychYwjj3RJNEo/knRzdnynE7RldNEP8lijOemVNIjn:lcE/64elych1zR3Ek65RldqICn
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E3C3906B77050868F979653423B786E73AF3A88C4B1B56427B343A385C2FE421C65BD3
sha3_384: 330de6cfde9a53ffec46e70a581399d1691c7a29b8a775fe94ade696cfb0a059c2bc20776e1447ffbc3cc941e08918f2
ep_bytes: 6820124000e8eeffffff000000000000
timestamp: 2012-04-06 06:35:51

Version Info:

0: [No Data]

Malware.AI.4156281360 also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanTrojan.GenericKDZ.96248
ClamAVWin.Trojan.Vobfus-61
FireEyeGeneric.mg.26fe301a38f6ffd2
CAT-QuickHealTrojan.Beebone.D
ALYacTrojan.GenericKDZ.96248
MalwarebytesMalware.AI.4156281360
VIPRETrojan.GenericKDZ.96248
SangforSuspicious.Win32.Save.vb
K7AntiVirusEmailWorm ( 003c363a1 )
K7GWEmailWorm ( 003c363a1 )
CrowdStrikewin/malicious_confidence_100% (D)
BaiduWin32.Worm.VB.ap
VirITTrojan.Win32.Zyx.KB
CyrenW32/VBInject.CO.gen!Eldorado
SymantecW32.Changeup
ESET-NOD32Win32/AutoRun.VB.AUJ
APEXMalicious
CynetMalicious (score: 100)
KasperskyWorm.Win32.Vobfus.eyqe
BitDefenderTrojan.GenericKDZ.96248
NANO-AntivirusTrojan.Win32.Jorik.cqkyew
AvastWin32:VB-ACFC [Trj]
TencentTrojan.Win32.FakePic.tng
TACHYONTrojan/W32.VB-Agent.122880.HM
EmsisoftTrojan.GenericKDZ.96248 (B)
F-SecureTrojan.TR/Kazy.64774.90
DrWebWin32.HLLW.Autoruner1.15058
TrendMicroTSPY_VOBFUS_BK22014A.TOMC
McAfee-GW-EditionBehavesLike.Win32.VBObfus.ct
Trapminemalicious.high.ml.score
SophosMal/VBCheMan-J
IkarusTrojan.Win32.VB
GDataTrojan.GenericKDZ.96248
JiangminTrojan/Generic.atlnn
AviraTR/Kazy.64774.90
Antiy-AVLWorm/Win32.WBNA.gen
XcitiumWorm.Win32.VB.AUB@4ol77w
ArcabitTrojan.Generic.D177F8
ZoneAlarmWorm.Win32.Vobfus.eyqe
MicrosoftWorm:Win32/Vobfus.EH
GoogleDetected
AhnLab-V3Trojan/Win.Jorik.R572990
Acronissuspicious
McAfeeW32/Autorun.worm.aaeh
MAXmalware (ai score=83)
VBA32SScope.Malware-Cryptor.VBCR.1141
Cylanceunsafe
PandaW32/Vobfus.GEW.worm
TrendMicro-HouseCallTSPY_VOBFUS_BK22014A.TOMC
RisingWorm.Win32.Vobfus.y (CLASSIC)
YandexTrojan.GenAsa!NJz+QeX5uVg
SentinelOneStatic AI – Malicious PE
FortinetW32/VBObfus.AU!tr
BitDefenderThetaAI:Packer.C1960AF71F
AVGWin32:VB-ACFC [Trj]
DeepInstinctMALICIOUS

How to remove Malware.AI.4156281360?

Malware.AI.4156281360 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment