Malware

Should I remove “Malware.AI.4188326196”?

Malware Removal

The Malware.AI.4188326196 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4188326196 virus can do?

  • Attempts to connect to a dead IP:Port (2 unique times)
  • Starts servers listening on 0.0.0.0:49165, 0.0.0.0:49166
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Chinese (Simplified)

Related domains:

pubg.heymoney.cn
e.tool007.cn

How to determine Malware.AI.4188326196?


File Info:

crc32: DCDF7186
md5: 46945fe1234235fd4b3dfbd7e851d9a5
name: 46945FE1234235FD4B3DFBD7E851D9A5.mlw
sha1: fac3ea0d8f24b640619adfce8177f79d7b6ca910
sha256: a7d1c466f5ae8727fafba753cfd2c35bda8717e9294620ef5ee0e3619d171ef4
sha512: 18630cec0305024d0a783d4eb1fc49c369fe1246697bf9d20507e74ce9391a873cb7d4c0f3817f61deb6ca9853e1a9c614eaf7b8109254549b55aa59ebff9fcf
ssdeep: 12288:OJ3RWmKey049b+8wl43tyyfF5uMrgzzsot7SacQ9n6PS:M3RWAyT+Xt3z4w7Sa
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.4188326196 also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Johnnie
ALYacGen:Variant.Johnnie.286655
CylanceUnsafe
SangforRiskware.Win32.Wacapew.C
AlibabaTrojan:Win32/TrojanX.04d189a3
Cybereasonmalicious.123423
CyrenW32/Trojan.RCYZ-1072
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
BitDefenderGen:Variant.Johnnie.286655
MicroWorld-eScanGen:Variant.Johnnie.286655
Ad-AwareGen:Variant.Johnnie.286655
BitDefenderThetaGen:NN.ZexaF.34804.HuW@a4Jzt0mj
TrendMicroTROJ_GEN.R011C0PA921
McAfee-GW-EditionRDN/Generic.grp
FireEyeGen:Variant.Johnnie.286655
EmsisoftGen:Variant.Johnnie.286655 (B)
SentinelOneStatic AI – Suspicious PE
MicrosoftTrojan:Win32/Tiggre!rfn
ArcabitTrojan.Johnnie.D45FBF
AegisLabTrojan.Win32.Johnnie.4!c
GDataGen:Variant.Johnnie.286655
AhnLab-V3Malware/Win32.Generic.C4282169
McAfeeRDN/Generic.grp
MAXmalware (ai score=84)
VBA32suspected of Trojan.Downloader.gen.h
MalwarebytesMalware.AI.4188326196
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R011C0PA921
RisingMalware.Heuristic!ET#83% (RDMK:cmRtazrf+yXU9fUC+1BzUhuxjALG)
eGambitUnsafe.AI_Score_97%
FortinetPossibleThreat.MU
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Generic/Trojan.509

How to remove Malware.AI.4188326196?

Malware.AI.4188326196 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment