Malware

Should I remove “Malware.AI.4197561919”?

Malware Removal

The Malware.AI.4197561919 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4197561919 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.4197561919?


File Info:

name: 4348DA65E4AEAE6472C7.mlw
path: /opt/CAPEv2/storage/binaries/000415d1c7a7a838ba2ef00874e352e8b43a57e2f98539b5908803056f883176
crc32: C3C7D0DA
md5: 4348da65e4aeae6472c7f97d6dd8ad8f
sha1: 8bf60eea83c34ec9de2359219978b8805f2629e3
sha256: 000415d1c7a7a838ba2ef00874e352e8b43a57e2f98539b5908803056f883176
sha512: f8ba9c74edcdbd68d1b06ec40dc2f1188b4bdbe80638133e8597698fad48eee31f993a0b06249286058454e241520e98eeabd78c77ebabd45047407c64c835cf
ssdeep: 3072:CZNnj60tY+44QUGRwtowsSBvLd2R9LaDytrL+ePxXSMtAg8ghYA:QFK+44QUuURQaDyt+2xig8j
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EDE3D05B368074B3D8A73B309B65332763AA5C342536C5CAF3980E5E2991862DF3D783
sha3_384: 8cebc860c58bb5e7fbd31167fe445213b540b7040565715455f68d866b8cfe374fe17c2df6390932306c710a2edfc374
ep_bytes: 558bec83ec14a1242798005657ff7020
timestamp: 2008-11-22 22:47:07

Version Info:

0: [No Data]

Malware.AI.4197561919 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Zbot.1e!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.447136
ClamAVWin.Spyware.Zbot-9841872-0
CAT-QuickHealTrojanpws.Zbot.7465
SkyhighBehavesLike.Win32.Generic.ch
ALYacGen:Variant.Razy.447136
MalwarebytesMalware.AI.4197561919
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanPSW:Win32/ShellCode.954c5755
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
VirITTrojan.Win32.Genus.QYA
SymantecTrojan.Zbot!gen2
tehtrisGeneric.Malware
ESET-NOD32a variant of Generik.FURMAOB
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGen:Variant.Razy.447136
AvastSf:Crypt-BT [Trj]
TencentMalware.Win32.Gencirc.10bcdb1d
EmsisoftGen:Variant.Razy.447136 (B)
F-SecureTrojan.TR/Spy.Zbot.usvqc
VIPREGen:Variant.Razy.447136
TrendMicroTSPY_ZBOT.SMRL
FireEyeGeneric.mg.4348da65e4aeae64
SophosMal/Generic-R
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Razy.447136
WebrootW32.Infostealer.Zeus
GoogleDetected
AviraTR/Spy.Zbot.usvqc
MAXmalware (ai score=100)
Antiy-AVLTrojan[PSW]/Win32.Zbot
KingsoftWin32.Troj.Generic.jm
XcitiumTrojWare.Win32.Spy.Zbot.ABW@1qnp50
ArcabitTrojan.Razy.D6D2A0
ViRobotTrojan.Win.Z.Zbot.155648.A
MicrosoftTrojan:Win32/Zbot.RI!MTB
VaristW32/Zbot.AG.gen!Eldorado
AhnLab-V3Worm/Win32.IRCBot.C136977
Acronissuspicious
McAfeeGenericRXAA-FA!4348DA65E4AE
VBA32TrojanSpy.Zbot
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallTSPY_ZBOT.SMRL
RisingSpyware.ZBot!1.E964 (CLASSIC)
YandexTrojanSpy.Zbot!azoKHi4Xxq0
IkarusPWS.Win32
MaxSecureTrojan.Malware.73860161.susgen
FortinetW32/Kryptik.BZAX!tr
BitDefenderThetaGen:NN.ZexaF.36608.jqZ@aWelCAe
AVGSf:Crypt-BT [Trj]
Cybereasonmalicious.a83c34
DeepInstinctMALICIOUS

How to remove Malware.AI.4197561919?

Malware.AI.4197561919 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment