Malware

Malware.AI.4164828763 removal tips

Malware Removal

The Malware.AI.4164828763 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4164828763 virus can do?

  • Performs HTTP requests potentially not found in PCAP.
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Harvests cookies for information gathering

How to determine Malware.AI.4164828763?


File Info:

name: 7DC14063C07AB78B9BDB.mlw
path: /opt/CAPEv2/storage/binaries/6b59c9f12fe7e266703266afd6d0cd8bfd2d53ab1f146a9ece7cd3ada34ea9a4
crc32: CEF14E1C
md5: 7dc14063c07ab78b9bdb81bcab79c514
sha1: d1039180f21439f67d99ea2e254acdf23c294c60
sha256: 6b59c9f12fe7e266703266afd6d0cd8bfd2d53ab1f146a9ece7cd3ada34ea9a4
sha512: 0aab9e8e270192debd992383dbb82ee71e83a774a666553113ed3b05b42c2120bf0751f4c659c33624e49c986d74c108409d760e24b59f13420c371cd9e1fc8c
ssdeep: 12288:tG1XB/vAtWTISJwogj31XlJwLIeedEoOCoBa3lNM:t+qWTISiogJ1JzeedJOjBa3lN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14BE46D37BA918433D6331A788D5B93A4582ABD206E397D4FBBE41D4C9F39A413835393
sha3_384: abb8e2e730da934a0e0842526b9bc8be8aca88e5d69726029adb4884b50deca93bc030e45d3c709a5cbb8537dad36182
ep_bytes: 558bec83c4f0b8bced4800e8587ef7ff
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Malware.AI.4164828763 also known as:

LionicTrojan.Win32.Hesv.4!c
MicroWorld-eScanGen:Variant.Zusy.305488
McAfeeArtemis!7DC14063C07A
CylanceUnsafe
SangforTrojan.Win32.Zusy.V47r
Cybereasonmalicious.3c07ab
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 99)
KasperskyHEUR:Trojan.Win32.Hesv.gen
BitDefenderGen:Variant.Zusy.305488
AvastWin32:Malware-gen
TencentWin32.Trojan.Hesv.Ckjl
Ad-AwareGen:Variant.Zusy.305488
EmsisoftGen:Variant.Zusy.305488 (B)
VIPREGen:Variant.Zusy.305488
McAfee-GW-EditionBehavesLike.Win32.Worm.jh
FireEyeGen:Variant.Zusy.305488
SophosGeneric ML PUA (PUA)
GDataGen:Variant.Zusy.305488
AviraHEUR/AGEN.1219642
MAXmalware (ai score=83)
Antiy-AVLTrojan/Generic.ASMalwS.4E3C
ArcabitTrojan.Zusy.D4A950
MicrosoftTrojan:Win32/Wacatac.B!ml
ALYacGen:Variant.Zusy.305488
MalwarebytesMalware.AI.4164828763
TrendMicro-HouseCallTROJ_GEN.R002H07J922
RisingTrojan.Generic@AI.93 (RDML:PzpC47ESBz6c6cVDnqhYBg)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PossibleThreat
BitDefenderThetaGen:NN.ZelphiCO.34698.QGW@ayk7J5ib
AVGWin32:Malware-gen

How to remove Malware.AI.4164828763?

Malware.AI.4164828763 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment