Malware

What is “Malware.AI.4185829255”?

Malware Removal

The Malware.AI.4185829255 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4185829255 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.4185829255?


File Info:

name: 9DD38FCF62F9B649EA92.mlw
path: /opt/CAPEv2/storage/binaries/b7f9542a8733746b042e2710c244abcf1f9e788028ad73c9a8a29e96438db6b8
crc32: 58261DCA
md5: 9dd38fcf62f9b649ea924dd2d1459c16
sha1: 0bde5c90f29e97a6a1bdcc88f0e12d8c53b03074
sha256: b7f9542a8733746b042e2710c244abcf1f9e788028ad73c9a8a29e96438db6b8
sha512: af7b92966cdd19a543da352b69709c2d376c381a7f1d92a41d32b87b6769ff353195a4aafe969e427c9c7b8bc29a06ad8e17a41ada16de81e13a618f89e84249
ssdeep: 12288:x7P4SUcw5z/HGRpJsTf70HGJLhIXTYi14:xFUcw5z/mRpJsTfthO74
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T179947C13FA647149E60349B05DB5A6FA293ABC351405DD073382EF0A6972A93ECF172F
sha3_384: 501fbbf0c1b0b1aaec58180e782b7d4dd26eca1f176b4e2d3ac2ed3bfa5dd8abd5972dd5796dac8f7ba8e18d274e5f88
ep_bytes: 682c3c4000e8eeffffff000040000000
timestamp: 2007-08-22 13:04:54

Version Info:

Translation: 0x0409 0x04b0
Comments: Knowledge is Power
CompanyName: Secret7
FileDescription: Coded & Compiled in VB6
LegalCopyright: © Ariful, 2007
ProductName: Disk Knight
FileVersion: 4.02
ProductVersion: 4.02
InternalName: Knight
OriginalFilename: Knight.exe

Malware.AI.4185829255 also known as:

LionicWorm.Win32.AutoRun.lcCa
DrWebWin32.HLLW.Knight
MicroWorld-eScanWin32.Worm.Disnight.B
CAT-QuickHealTrojan.Sigmal.S567718
ALYacWin32.Worm.Disnight.B
CylanceUnsafe
ZillyaWorm.AutoRun.Win32.40
SangforWorm.Win32.AutoRun.CH
K7AntiVirusP2PWorm ( 0001ba6d1 )
AlibabaWorm:Win32/AutoRun.400d36a6
K7GWP2PWorm ( 0001ba6d1 )
Cybereasonmalicious.f62f9b
BitDefenderThetaGen:NN.ZevbaF.34698.zm0@aiyizzai
VirITTrojan.Win32.VB.DZ
CyrenW32/Worm.DZZZ-6025
SymantecW32.SillyFDC
Elasticmalicious (high confidence)
ESET-NOD32Win32/AutoRun.CH
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Worm.Autorun-279
KasperskyWorm.Win32.AutoRun.aul
BitDefenderWin32.Worm.Disnight.B
NANO-AntivirusTrojan.Win32.AutoRun.bdahs
SUPERAntiSpywareTrojan.Agent/Gen-DiskKnight
AvastINF:DiskKnight [Trj]
TencentWin32.Worm.Autorun.Fplw
Ad-AwareWin32.Worm.Disnight.B
TACHYONWorm/W32.VB-AutoRun.421888
EmsisoftWin32.Worm.Disnight.B (B)
ComodoWorm.Win32.AutoRun.CH@3903
VIPREWin32.Worm.Disnight.B
TrendMicroWORM_KNIGHT.A
McAfee-GW-EditionBehavesLike.Win32.Trickbot.gh
FireEyeGeneric.mg.9dd38fcf62f9b649
SophosW32/Autorun-H
JiangminWorm/AutoRun.lso
WebrootW32.Malware.Gen
GoogleDetected
AviraTR/Autorun.acl
Antiy-AVLTrojan/Generic.ASMalwS.22
MicrosoftTrojan:Win32/VB
ArcabitWin32.Worm.Disnight.B
ViRobotTrojan.Win32.Autorun.421888
GDataWin32.Worm.Disnight.B
CynetMalicious (score: 99)
AhnLab-V3Worm/Win32.AutoRun.R24633
McAfeeGeneric VB.b
MAXmalware (ai score=86)
VBA32TScope.Trojan.VB
MalwarebytesMalware.AI.4185829255
TrendMicro-HouseCallWORM_KNIGHT.A
RisingWorm.Win32.Autorun.ao (CLASSIC)
YandexWorm.AutoRun.PX
IkarusWorm.Win32.AutoRun
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/AutoRun.AUL!worm
AVGINF:DiskKnight [Trj]
PandaW32/DiskKnight.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.4185829255?

Malware.AI.4185829255 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment