Malware

Malware.AI.4166615872 removal guide

Malware Removal

The Malware.AI.4166615872 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4166615872 virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Deletes its original binary from disk
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.4166615872?


File Info:

crc32: E3FBDD00
md5: b9e02da7d84373370fe989c07e138035
name: B9E02DA7D84373370FE989C07E138035.mlw
sha1: 3b1f53df5ad1b127e84586669c1c62b4b21e8ec5
sha256: cd8ac79ac9a6a767041904301204ea3431e50e5b9712568b596f1b5f7a42fd79
sha512: a4f1bc403c4fd9a993f4d130bd40cb69b6641bedc497f476b92c8c755af2bad58fa452ae297b24e2aadf2e27f9c97840e36fd1b5b23642c9b5dd8606ddd2872f
ssdeep: 6144:GAQni0R9H/pvJJhT0yo8Q5mgedkDw46WBo0r0aLZEkU:+nD/pd43RmgeeDw46Go0rLWP
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Malware.AI.4166615872 also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Agent
ALYacTrojan.GenericKD.37246185
CylanceUnsafe
SangforRiskware.Win32.Wacapew.C
AlibabaTrojan:Win32/Generic.4432fb57
Cybereasonmalicious.f5ad1b
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
BitDefenderTrojan.GenericKD.37246185
MicroWorld-eScanTrojan.GenericKD.37246185
Ad-AwareTrojan.GenericKD.37246185
SophosGeneric ML PUA (PUA)
BitDefenderThetaGen:NN.ZexaF.34058.tmGfaWMMrrhj
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PGK21
McAfee-GW-EditionBehavesLike.Win32.RansomGandCrab.fc
FireEyeGeneric.mg.b9e02da7d8437337
EmsisoftTrojan.GenericKD.37246185 (B)
SentinelOneStatic AI – Malicious PE
WebrootPua.Gen
eGambitUnsafe.AI_Score_99%
MicrosoftProgram:Win32/Wacapew.C!ml
ArcabitTrojan.Generic.D23854E9
GDataTrojan.GenericKD.37246185
AhnLab-V3Trojan/Win.Generic.C4574015
McAfeeRDN/Generic.dx
MAXmalware (ai score=88)
VBA32BScope.Trojan.MulDrop
MalwarebytesMalware.AI.4166615872
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0PGK21
MaxSecureTrojan.Malware.119747116.susgen
FortinetMalicious_Behavior.SB
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Heur.Generic.HwsBkGcA

How to remove Malware.AI.4166615872?

Malware.AI.4166615872 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment