Malware

Malware.AI.4200532744 (file analysis)

Malware Removal

The Malware.AI.4200532744 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4200532744 virus can do?

  • Presents an Authenticode digital signature
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.4200532744?


File Info:

crc32: EBCA0A5F
md5: 10e5aa0407ec9888378f0c3e76c17dab
name: 10E5AA0407EC9888378F0C3E76C17DAB.mlw
sha1: 8f506d2c9b52c192ad2a2980662c6f8d6be5c865
sha256: a907974bb9eb5fecf8dd4f14cf6bff3662547f9902530009a02879c8e1dc2730
sha512: 1910c1d1da0ea744c277324dc39fb9bf334f9531f2b68f5d5a353333a096c5fc9d18db5b45565bb34fc73396fd8387c42ca788b7bc2dd61849413787bbd3f3b1
ssdeep: 49152:VDCaW7o5KC+eCpIkPAyDa7AYT+YhjQoX0uaSs0YrhWFwA:5Cg5QpIkoKeVjErlrhyR
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Tx - 9479
FileVersion: 1.0.0.0
CompanyName: Tx - 9479
Comments: Tx - 9479
ProductName: Tx - 9479
ProductVersion: 1.0.0.0
FileDescription: Tx - 9479
Translation: 0x0804 0x04b0

Malware.AI.4200532744 also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MalwarebytesMalware.AI.4200532744
CrowdStrikewin/malicious_confidence_70% (W)
K7GWAdware ( 004b8e1b1 )
K7AntiVirusAdware ( 004b8e1b1 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/FlyStudio.Packed.AE potentially unwanted
APEXMalicious
CynetMalicious (score: 100)
ComodoTrojWare.Win32.Agent.ISVQ@5mbonp
BitDefenderThetaGen:NN.ZexaF.34142.2D2@aKfN4Hfb
McAfee-GW-EditionArtemis
FireEyeGeneric.mg.10e5aa0407ec9888
SophosGeneric PUA IP (PUA)
SentinelOneStatic AI – Suspicious PE
eGambitPE.Heur.InvalidSig
GridinsoftPUP.Qiyi.vl!c
GDataWin32.Trojan.Agent.X8QWRZ
Acronissuspicious
YandexBackdoor.Poison!1ugYMQKWifg
IkarusTrojan.Black
MaxSecureTrojan.Malware.300983.susgen
FortinetPossibleThreat.PALLASNET.H
Paloaltogeneric.ml

How to remove Malware.AI.4200532744?

Malware.AI.4200532744 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment