Malware

Malware.AI.4198808351 removal instruction

Malware Removal

The Malware.AI.4198808351 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4198808351 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Behavioural detection: Injection (Process Hollowing)
  • Behavioural detection: Injection (inter-process)
  • CAPE detected the shellcode patterns malware family
  • Checks the presence of disk drives in the registry, possibly for anti-virtualization
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Malware.AI.4198808351?


File Info:

name: A4EC55492173AEE3574A.mlw
path: /opt/CAPEv2/storage/binaries/c5a3f75868de21018bab3be32f830cc5843b5ca2de05b740f42392d6dd6b8dca
crc32: B50AE47C
md5: a4ec55492173aee3574a23b721a08bbe
sha1: 706bdd881d69bddb1662ccec948ba6d821222b32
sha256: c5a3f75868de21018bab3be32f830cc5843b5ca2de05b740f42392d6dd6b8dca
sha512: a5d42471d925e66eeadb5917e4862110777c5cd1681b77e8b1c8675117e0a527174c5ada2f6d62440108a99460d19e421cadd8a1edaea735ebf648173ce5f352
ssdeep: 12288:4r9pRsZCrpr4yYJUkK39qZrsQqFPD+JkRKr:4hrJdeK0ZwQKJS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BCD48E62F290C833C1632A398D5F9768ED26BE003D2869563BF41D4C9FFB6413929797
sha3_384: 48065d033a4cfc6fc724f8fd96637a9ff45d7e5260d813aad9f21b2450e9e99c7da03c861c524b15eb1d77220c83ba25
ep_bytes: 558bec83c4f0b840634700e888fbf8ff
timestamp: 1991-12-17 01:26:52

Version Info:

0: [No Data]

Malware.AI.4198808351 also known as:

BkavW32.Common.EBEE0B96
LionicTrojan.Win32.FareIt.b!c
tehtrisGeneric.Malware
DrWebTrojan.DownLoader26.23607
MicroWorld-eScanTrojan.Delf.FareIt.Gen.KGW@caheyYmi
FireEyeGeneric.mg.a4ec55492173aee3
SkyhighBehavesLike.Win32.Fareit.hh
McAfeeGenericRXEF-EY!A4EC55492173
Cylanceunsafe
ZillyaTrojan.SpyEyes.Win32.14107
SangforDropper.Win32.Injector.V615
K7AntiVirusTrojan ( 0052947a1 )
AlibabaTrojanDropper:Win32/Tiggre.92fb15c5
K7GWTrojan ( 0052947a1 )
Cybereasonmalicious.81d69b
BitDefenderThetaAI:Packer.5A57D81618
SymantecInfostealer.Lokibot
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.DWHY
APEXMalicious
ClamAVWin.Malware.Defi-7077457-0
KasperskyTrojan-Dropper.Win32.Sysn.ciqw
BitDefenderTrojan.Delf.FareIt.Gen.KGW@caheyYmi
NANO-AntivirusTrojan.Win32.Androm.eyoprf
AvastWin32:Evo-gen [Trj]
TencentWin32.Trojan-Dropper.Sysn.Zylw
EmsisoftTrojan.Delf.FareIt.Gen.KGW@caheyYmi (B)
F-SecureTrojan.TR/AD.SmokeLoader.suecp
VIPRETrojan.Delf.FareIt.Gen.KGW@caheyYmi
TrendMicroTROJ_INJECTO.KXB
Trapminemalicious.high.ml.score
SophosMal/Fareit-Q
GDataTrojan.Delf.FareIt.Gen.KGW@caheyYmi
JiangminTrojanDropper.Sysn.ege
WebrootW32.Trojan.Gen
GoogleDetected
AviraTR/AD.SmokeLoader.suecp
VaristW32/Injector.EHHI-1135
Antiy-AVLTrojan/Win32.TSGeneric
Kingsoftmalware.kb.a.985
XcitiumMalware@#tfc7mnk0fixi
ArcabitTrojan.Delf.FareIt.Gen.E55A40
ViRobotTrojan.Win32.Agent.687616.G
ZoneAlarmTrojan-Dropper.Win32.Sysn.ciqw
MicrosoftTrojan:Win32/Tiggre!rfn
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Androm.R221774
ALYacTrojan.Delf.FareIt.Gen.KGW@caheyYmi
MAXmalware (ai score=100)
VBA32Trojan.Downloader
MalwarebytesMalware.AI.4198808351
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_INJECTO.KXB
RisingTrojan.Injector!1.AFE3 (CLASSIC)
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.12185682.susgen
FortinetW32/Injector.DVFA!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.4198808351?

Malware.AI.4198808351 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment