Malware

Malware.AI.4199425459 removal tips

Malware Removal

The Malware.AI.4199425459 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4199425459 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (2 unique times)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Performs some HTTP requests
  • Sniffs keystrokes
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Exhibits possible ransomware file modification behavior
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

www.sostronk.com
ocsp.pki.goog
dl.sostronk.com
crls.pki.goog

How to determine Malware.AI.4199425459?


File Info:

crc32: C1CDB74F
md5: de5f534e84315dfa36b62df7b7f727e2
name: DE5F534E84315DFA36B62DF7B7F727E2.mlw
sha1: 25368ddc7e77de5bfc6147f7a9e852cac4b3ef2d
sha256: 0e940200ef73aac080864334a56f3cc19195cc7058eeca59e8c0abb1e6836923
sha512: 9515a05eb37209ead72211374bb14e77c580e42098d520d7af0c8049e45a4a7a5c26a81ebda2a817589ed54c5eaa47a481e62532131ce7b5b36af4b9d2f799a1
ssdeep: 3072:jAsj8MBX8s0oXJoMRwBHQIhrD0q7w8FQVvy6chat7B+MlhfTtE+7VIQ3LQ:jAsBZmQwXRD9w8FQvtcvafa+LE
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Malware.AI.4199425459 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.RansomKD.4!c
ALYacTrojan.RansomKD.5946303
CylanceUnsafe
ZillyaTrojan.RansomKD.Win32.306
SangforTrojan.Win32.Agent.usrg
CrowdStrikewin/malicious_confidence_60% (W)
BitDefenderTrojan.RansomKD.5946303
Cybereasonmalicious.e84315
SymantecRansom.Cerber
ESET-NOD32a variant of Generik.IIRHXBE
APEXMalicious
AlibabaTrojan:Win32/Generic.9c98afb7
MicroWorld-eScanTrojan.RansomKD.5946303
Ad-AwareTrojan.RansomKD.5946303
SophosMal/Generic-S
ComodoMalware@#3fq7m5gg95xz0
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.ObfusRansom.cc
FireEyeGeneric.mg.de5f534e84315dfa
EmsisoftTrojan.RansomKD.5946303 (B)
MicrosoftVirTool:Win32/Aicat.A!ml
GDataTrojan.RansomKD.5946303
McAfeeArtemis!DE5F534E8431
MAXmalware (ai score=88)
VBA32suspected of Trojan.Downloader.gen
MalwarebytesMalware.AI.4199425459
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R011H0CDP21
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Ransom.560

How to remove Malware.AI.4199425459?

Malware.AI.4199425459 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment