Malware

Malware.AI.4169200973 removal tips

Malware Removal

The Malware.AI.4169200973 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4169200973 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.4169200973?


File Info:

name: B6392F4C42158C78454C.mlw
path: /opt/CAPEv2/storage/binaries/4d93fe567920306a15633f1f33e69ef842674457420ce05c1a1757607bd91993
crc32: BC37669D
md5: b6392f4c42158c78454cf409f629abbe
sha1: 00a94c9d374b669327f4933c77824f7f5f6478e9
sha256: 4d93fe567920306a15633f1f33e69ef842674457420ce05c1a1757607bd91993
sha512: 114f0e283aab8bcb66ceabf163ec57f34cfef8184ea38fff12bb463cd0f82289498ef43916f83f17fe9d336edd849d77c587c7ef3040281262dc4fd5a27be554
ssdeep: 3072:GgrKftOEUaJCYwoxcyBuiAvq9Zv+X7LkAJqQ:JKtiGJuisq9ZmroA
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10304BEC051A5C935F44F16BCE9BEC55CAC792BCECBD6234A85FC18F604DA2118B98EE1
sha3_384: 8017541c56d83e77340a4ad7665e83eeed3499e90e8a0b806a20098a8cf198789f301981a9d9808a0df659e364f25c59
ep_bytes: eb2f0000520043433874007a004e3900
timestamp: 2010-01-30 21:26:43

Version Info:

CompanyName: Windows (R) Codename Longhorn DDK provider
FileDescription: Windows Setup API
FileVersion: 6.0.6001.17127
InternalName: LimitedEdition.exe
LegalCopyright: McAfee Limited Edition
OriginalFilename: LimitedEdition.exe
ProductName: Limited Edition version Ex2011 by McAfee Inc.
ProductVersion: 6.0.6001.17127
Translation: 0x0409 0x04b0

Malware.AI.4169200973 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.CodecPack.lkym
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader1.42208
MicroWorld-eScanGen:Variant.Zusy.434992
FireEyeGeneric.mg.b6392f4c42158c78
CAT-QuickHealTrojan.Renos.MJ
SkyhighDownloader-CEW.o
ALYacGen:Variant.Zusy.434992
Cylanceunsafe
VIPREGen:Variant.Zusy.434992
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005110401 )
BitDefenderGen:Variant.Zusy.434992
K7GWTrojan ( 005110401 )
Cybereasonmalicious.d374b6
ArcabitTrojan.Zusy.D6A330
BitDefenderThetaGen:NN.ZexaF.36792.kC0@aOZM9Qmi
VirITTrojan.Win32.Crypt.AEHE
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.FakeAlert.BBT
APEXMalicious
ClamAVWin.Trojan.Agent-261411
KasperskyPacked.Win32.Krap.ih
AlibabaVirTool:Win32/Obfuscator.765708a4
NANO-AntivirusTrojan.Win32.CodecPack.bthmn
RisingDownloader.Renos!8.1D0 (TFE:1:rxhEHkvrLSJ)
SophosMal/FakeAV-CX
F-SecureTrojan.TR/Code.taf.3
ZillyaTrojan.FakeAV.Win32.36196
TrendMicroTROJ_FRAUDL.SMMV
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Zusy.434992 (B)
IkarusTrojan.Win32.FakeAV
MAXmalware (ai score=100)
JiangminTrojanDownloader.CodecPack.bai
WebrootW32.Malware.Downloader
GoogleDetected
AviraTR/Code.taf.3
VaristW32/FakeAlert.IV.gen!Eldorado
Antiy-AVLTrojan[Packed]/Win32.Krap
Kingsoftmalware.kb.a.1000
XcitiumTrojWare.Win32.TrojanDownloader.Codecpack.~vxd@2rtp7y
MicrosoftTrojanDownloader:Win32/Renos.MJ
ZoneAlarmPacked.Win32.Krap.ih
GDataGen:Variant.Zusy.434992
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Fakeav.178176.AS
McAfeeDownloader-CEW.o
DeepInstinctMALICIOUS
VBA32BScope.Trojan.MTA.01233
MalwarebytesMalware.AI.4169200973
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_FRAUDL.SMMV
TencentTrojan.Win32.Downloader.aaz
YandexTrojan.DL.CodecPack!0vE4hp9sHYY
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.1694419.susgen
FortinetW32/CodePack.FS!tr.dldr
AVGWin32:MalOb-DP [Cryp]
AvastWin32:MalOb-DP [Cryp]
CrowdStrikewin/malicious_confidence_90% (D)

How to remove Malware.AI.4169200973?

Malware.AI.4169200973 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment