Malware

How to remove “Malware.AI.4165136840”?

Malware Removal

The Malware.AI.4165136840 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4165136840 virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Executable file is packed/obfuscated with ASPack
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.4165136840?


File Info:

name: 3A6DA3650076F4F4DB56.mlw
path: /opt/CAPEv2/storage/binaries/2c73b7dd837a6c0a7f04f456e0da99fe6a1a2d6338360fee93ad14afac9243ce
crc32: 68486EE8
md5: 3a6da3650076f4f4db561045b87844e5
sha1: 2fdbb73dab297a3b0590c622ccf904b7d38531e3
sha256: 2c73b7dd837a6c0a7f04f456e0da99fe6a1a2d6338360fee93ad14afac9243ce
sha512: c46d493b525c9b6a12016c1be79959c66e48de30ef2715cdfd0bc1ef241f7eaea9f9a393d3158c0df4271ec42be096aed6d6470f7ee1b8cc9aef924cabf715b9
ssdeep: 3072:RNHjt0oBFQZicbKyuiOP1vuOJqiOkuMd3RpkXwp2Xh/X:RZjt0DXbKqOPwOoiOEd3RTcdX
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AE04123CCA00056FC8C3973145662F97D752A21FA6938BCBA56B860F3943B9D39992F1
sha3_384: 9a0086ac8f5098fd772615be1937781b05ff97c13d498d1106c7a77f0a3845d834cda7acddad517e45c1cbc87341ebc8
ep_bytes: 60e803000000e9eb045d4555c3e80100
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Malware.AI.4165136840 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (moderate confidence)
FireEyeGeneric.mg.3a6da3650076f4f4
Cybereasonmalicious.dab297
BitDefenderThetaGen:NN.ZelphiF.36608.lOWbaePmhrdb
SymantecML.Attribute.HighConfidence
APEXMalicious
Trapminesuspicious.low.ml.score
Antiy-AVLTrojan/Win32.SGeneric
Kingsoftmalware.kb.a.1000
CynetMalicious (score: 100)
DeepInstinctMALICIOUS
MalwarebytesMalware.AI.4165136840
YandexTrojan.GenAsa!jN83v0Z1KLY
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PossibleThreat
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Malware.AI.4165136840?

Malware.AI.4165136840 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment