Malware

What is “Malware.AI.4194052283”?

Malware Removal

The Malware.AI.4194052283 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4194052283 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.4194052283?


File Info:

name: 5E4BE204576298AA85A6.mlw
path: /opt/CAPEv2/storage/binaries/ccdeb210279f5b18c2676a9226cf8df80309f2ec1f6c9296fd3d71b61b9c794b
crc32: 22507C3A
md5: 5e4be204576298aa85a636be61cf42b1
sha1: c1babb70a2f9b2594cf80135278403d7637257f9
sha256: ccdeb210279f5b18c2676a9226cf8df80309f2ec1f6c9296fd3d71b61b9c794b
sha512: 062cafbc3ff2e89d97a5d6abf69f35612beaf9765e683994de677db15cc5f20f9c89051c25f0e8f209a874d3200d0f500d24d2585163cf8ee3ad61a575e03121
ssdeep: 12288:vf2O0fbkI73vM70kGU7vtQ9XBqQUqyX5pwHAFhf+5KkVWhwYL8:vfV0fbkILvqG2SQNpwHAFhfGchY
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E7356C22A281C53AF0F600B5C6B157B81E7D3F326B19B0CB67D87E4A9A709E4D931357
sha3_384: 7e738ef4d6d23900ff56f3c1928a3b3c34a0d36843473859474b68723237a5aa451a5468973a447ef9f02423ca6584b9
ep_bytes: 6a606888e14000e803280000bf940000
timestamp: 2007-09-17 18:41:05

Version Info:

CompanyName: SageTV, LLC
FileDescription: SageTV
FileVersion: 6, 0, 13, 1
InternalName: SageTV
LegalCopyright: Copyright © 2001-2006 SageTV, LLC
OriginalFilename: SageTV.exe
ProductName: SageTV
ProductVersion: 6.0
Translation: 0x0800 0x04b0

Malware.AI.4194052283 also known as:

BkavW32.AIDetect.malware2
LionicRiskware.Win32.SpyLocked.1!c
FireEyeSpyware.1981
McAfeeArtemis!5E4BE2045762
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforRiskware.Win32.Agent.ky
AlibabaTrojan:Win32/Generic.47b4e219
Cybereasonmalicious.457629
VirITTrojan.Win32.MulDrop3.BYVG
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastFileRepMetagen [Malware]
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderSpyware.1981
NANO-AntivirusTrojan.Win32.FakeAV.belykq
MicroWorld-eScanSpyware.1981
TencentWin32.Trojan-fakeav.Spylocked.Sxot
Ad-AwareSpyware.1981
EmsisoftSpyware.1981 (B)
ComodoMalware@#37ncokhazioby
DrWebTrojan.MulDrop3.34352
ZillyaTrojan.SpyLocked.Win32.16
TrendMicroTROJ_GEN.R002C0OL521
McAfee-GW-EditionArtemis!Trojan
SophosGeneric PUA MB (PUA)
GDataSpyware.1981
JiangminAdWare/SpyLocked.b
WebrootW32.Malware.L
Antiy-AVLTrojan/Generic.ASMalwS.513186
KingsoftWin32.Troj.Undef.(kcloud)
GridinsoftRansom.Win32.Wacatac.sa
ViRobotTrojan.Win32.Z.Spylocked.1114112
MicrosoftProgram:Win32/Wacapew.C!ml
ALYacSpyware.1981
MAXmalware (ai score=88)
VBA32TrojanFakeAV.SpyLocked
MalwarebytesMalware.AI.4194052283
TrendMicro-HouseCallTROJ_GEN.R002C0OL521
YandexFraudtool.SpyLocked!MvOl1HJgXZg
SentinelOneStatic AI – Suspicious PE
eGambitGeneric.Malware
FortinetRiskware/SpyLocked
AVGFileRepMetagen [Malware]
PandaTrj/CI.A

How to remove Malware.AI.4194052283?

Malware.AI.4194052283 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment