Malware

Malware.AI.4194110400 removal tips

Malware Removal

The Malware.AI.4194110400 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4194110400 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Enumerates running processes
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.4194110400?


File Info:

name: AFC798826B6FDEC6EC87.mlw
path: /opt/CAPEv2/storage/binaries/aff906488014fe4f96298eef42403a2dae3576c06dbe22ad513c5d2e6bbf1c7c
crc32: 080BC595
md5: afc798826b6fdec6ec87f49b3f9eaf71
sha1: 81ef2b1de667d4a43b48b875a0028f6fef4d72e6
sha256: aff906488014fe4f96298eef42403a2dae3576c06dbe22ad513c5d2e6bbf1c7c
sha512: 026b1494a086c3540a11c317d9053d4513fefc083dd3ae07dab86ca6b3139980952eb7bde40537eb6e6917ccde733811a029b7c8527924edaadad220eabc1efe
ssdeep: 24576:+AHnh+eWsN3skA4RV1Hom2KXMmHaGrG1T5:ph+ZkldoPK8YaGrGv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T197157C026395C221FFBB92735B69B27146BD7C254323883F1698BD78B8705B11E2DE63
sha3_384: 5b40dac65435fc24085adbc2409c3bd96829e64da09b66dd65b4728b690ed4bca21acda067b57d4fd9d9a070fc1501c9
ep_bytes: e8c8d00000e97ffeffffcccccccccccc
timestamp: 2021-12-07 19:24:59

Version Info:

FileVersion: 2.3.18
Comments: SolidShare.Net Unattended Installer
FileDescription: SolidShare.Net Unattended Installer
ProductVersion: 2.3.18
LegalCopyright: © 2021 By KiNGHaZe
CompanyName: SolidShare TEAM
ProductName: By Click Downloader
Translation: 0x0409 0x04b0

Malware.AI.4194110400 also known as:

BkavW32.AIDetect.malware2
LionicHacktool.Win32.Gamehack.3!e
MicroWorld-eScanAIT:Trojan.Nymeria.4235
FireEyeAIT:Trojan.Nymeria.4235
CAT-QuickHealTrojan.Nymeria
ALYacAIT:Trojan.Nymeria.4235
CylanceUnsafe
K7AntiVirusTrojan ( 700000111 )
K7GWTrojan ( 700000111 )
Cybereasonmalicious.26b6fd
CyrenW32/AutoIt.LF.gen!Eldorado
ESET-NOD32a variant of Win32/HackTool.Silentall.N potentially unsafe
TrendMicro-HouseCallTROJ_GEN.R002H09L821
BitDefenderAIT:Trojan.Nymeria.4235
AvastWin32:Malware-gen
Ad-AwareAIT:Trojan.Nymeria.4235
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
EmsisoftAIT:Trojan.Nymeria.4235 (B)
GDataAIT:Trojan.Nymeria.4235 (2x)
AviraTR/ATRAPS.Gen
MAXmalware (ai score=82)
GridinsoftRansom.Win32.Wacatac.sa
ArcabitAIT:Trojan.Nymeria.D108B
MicrosoftProgram:Win32/Wacapew.C!ml
CynetMalicious (score: 99)
McAfeeArtemis!AFC798826B6F
MalwarebytesMalware.AI.4194110400
APEXMalicious
IkarusTrojan.AutoIt.Acapulco
FortinetRiskware/Silentall
AVGWin32:Malware-gen

How to remove Malware.AI.4194110400?

Malware.AI.4194110400 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment