Malware

How to remove “Malware.AI.4185275779”?

Malware Removal

The Malware.AI.4185275779 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4185275779 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Possible date expiration check, exits too soon after checking local time
  • Anomalous file deletion behavior detected (10+)
  • A process attempted to delay the analysis task.
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Created a process from a suspicious location
  • Attempts to interact with an Alternate Data Stream (ADS)

How to determine Malware.AI.4185275779?


File Info:

name: 37F8E024EBD3BBEE9508.mlw
path: /opt/CAPEv2/storage/binaries/d44ebebf9e859a45c1cd6cb87b613e9e24efc4b6eb11f69e6a26be6f09a22dac
crc32: D0CEE8AB
md5: 37f8e024ebd3bbee9508ded140b00a5f
sha1: 60d1d34275aca95f36e97f2ad3b219d6fa6a5a40
sha256: d44ebebf9e859a45c1cd6cb87b613e9e24efc4b6eb11f69e6a26be6f09a22dac
sha512: 13367f06a10f080324db80e067bdef746217c32a59ed61b44ee294d124c0af1f01b65c86d2dd864dd24a0ef42ead4b5e2ef4f3d78df203ede4382756244701ea
ssdeep: 12288:L5oaqjp/9TvlKiS/wA3/LnTjeb2iP3xl6r9Hs8N/UH:L5v4DTvsjfevxl6r9M8e
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T190F46C81F3435344D9AA5E7591216FD981337FA53E29B39ABF38B96337335C24E28281
sha3_384: c0647f7ff4f2a8b6d1b5bc842cc69f13fcc178a95414f30d8a98ddbe4edd0abc53b84c48cc6a849f6a07b3e8bb94d067
ep_bytes: 4883ec2849c7c0600100004831d248b9
timestamp: 2018-02-01 19:43:01

Version Info:

0: [No Data]

Malware.AI.4185275779 also known as:

LionicTrojan.MSIL.LightStone.m!c
MicroWorld-eScanTrojan.GenericKD.46972381
FireEyeGeneric.mg.37f8e024ebd3bbee
McAfeeArtemis!37F8E024EBD3
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusTrojan-Downloader ( 0058026e1 )
AlibabaBackdoor:MSIL/LightStone.595017b7
K7GWTrojan-Downloader ( 0058026e1 )
CrowdStrikewin/malicious_confidence_60% (W)
SymantecTrojan.Gen.MBT
ESET-NOD32BAT/TrojanDownloader.Agent.OIU
Paloaltogeneric.ml
KasperskyBackdoor.MSIL.LightStone.ecy
BitDefenderTrojan.GenericKD.46972381
NANO-AntivirusTrojan.Win64.LightStone.jbzjvx
AvastBV:Dropper-CV [Drp]
TencentBat.Trojan-downloader.Agent.Lneu
Ad-AwareTrojan.GenericKD.46972381
SophosMal/Generic-S
ZillyaTrojan.Diztakun.Win32.3913
TrendMicroTROJ_GEN.R06BC0WIL21
McAfee-GW-EditionBehavesLike.Win64.BadFile.bh
EmsisoftTrojan.GenericKD.46972381 (B)
GDataTrojan.GenericKD.46972381
WebrootW32.Malware.Gen
AviraTR/Dldr.Agent.dkpgy
ArcabitTrojan.Generic.D2CCBDDD
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.46972381
MAXmalware (ai score=80)
VBA32Backdoor.MSIL.LightStone
MalwarebytesMalware.AI.4185275779
TrendMicro-HouseCallTROJ_GEN.R06BC0WIL21
YandexTrojan.Igent.bWGyA3.8
IkarusTrojan-Downloader.BAT.Agent
FortinetBAT/Agent.OIU!tr.dldr
AVGBV:Dropper-CV [Drp]
Cybereasonmalicious.275aca
PandaTrj/CI.A

How to remove Malware.AI.4185275779?

Malware.AI.4185275779 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment