Malware

Malware.AI.4200627027 removal guide

Malware Removal

The Malware.AI.4200627027 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4200627027 virus can do?

  • Unconventionial language used in binary resources: Slovak
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.4200627027?


File Info:

name: CA032CA91BA350A0231C.mlw
path: /opt/CAPEv2/storage/binaries/6b221cd4ab97e06f4004b8030dc806006aa03e175f764e5297c99ca434e5bf4f
crc32: 7BED03A5
md5: ca032ca91ba350a0231c9d4db4ac2090
sha1: c1fbd64603c96b6b4348e215303c9716de274a04
sha256: 6b221cd4ab97e06f4004b8030dc806006aa03e175f764e5297c99ca434e5bf4f
sha512: a5b402fc56403298e5bc9300973fe09f9c7185f7bd40732e0c5220efa6a9c1e207f20b9e188075d09b8d51ac937182618c6d7efbcf58a704295a3430a6c9fe50
ssdeep: 3072:PeCfkxtZFquLKWfjbp+Yb9JiQnmdfi5AJ/WfsXeHYH:Pn+j0uLK8Jb9JKczXH
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FCF37B10F2C8E033F15A053C455AB76046AAFD642A6EB9DF27C974EF4E712E39124BC6
sha3_384: af27a5d042f83fc073d4728798744ce356b90378209ead3c05ffb49878f1833209b0e96533dcffd07ddb97d5cbad8fe7
ep_bytes: e86e610000e989feffff8bff558bec81
timestamp: 2013-06-17 18:57:11

Version Info:

CompanyName: Grand-Automatic Software Group
FileDescription: Mobile Broadband Experience Parser Task
FileVersion: 3.1.3.3
InternalName: mobtaskparser
LegalCopyright: Copyright (C) 2006-2012 - Grand-Automatic Software Group
OriginalFilename: mobexptask
ProductName: Mobile Broadband Experience Parser Task
ProductVersion: 3.1.3.3
Translation: 0x041b 0x04b0

Malware.AI.4200627027 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Zusy.4!c
Elasticmalicious (high confidence)
DrWebBackDoor.Tishop.58
MicroWorld-eScanGen:Variant.Zusy.51778
FireEyeGeneric.mg.ca032ca91ba350a0
McAfeePWS-Zbot-FBFN!CA032CA91BA3
CylanceUnsafe
ZillyaTrojan.LockScreen.Win32.8160
SangforTrojan.Win32.AGEN.1017459
AlibabaVirTool:Win32/Obfuscator.09d0eb0d
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaGen:NN.ZexaF.34232.ju0@ay5PTRnO
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/LockScreen.APR
TrendMicro-HouseCallTROJ_FRS.0NA103BL20
Paloaltogeneric.ml
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Zusy.51778
NANO-AntivirusTrojan.Win32.Tishop.ezgwrw
SUPERAntiSpywareTrojan.Agent/Gen-Graftor
AvastSf:Crypt-CG [Trj]
TencentWin32.Trojan.Lockscreen.Sxdz
Ad-AwareGen:Variant.Zusy.51778
EmsisoftGen:Variant.Zusy.51778 (B)
ComodoMalware@#1uve0zppbw8v6
VIPRETrojan.Win32.Reveton.a (v)
TrendMicroTROJ_FRS.0NA103BL20
McAfee-GW-EditionPWS-Zbot-FBFN!CA032CA91BA3
SophosMal/Generic-R + Mal/EncPk-AKK
IkarusVirus.Win32.Zbot
GDataGen:Variant.Zusy.51778
JiangminTrojanSpy.Zbot.dkkr
WebrootTrojan.Dropper.Gen
AviraTR/Obfuscate.ahi.116
Antiy-AVLTrojan/Generic.ASMalwS.2AC7D4
KingsoftWin32.Troj.Undef.(kcloud)
GridinsoftRansom.Win32.Zbot.sa
ViRobotTrojan.Win32.S.Foreign.159744.Y
MicrosoftVirTool:Win32/Obfuscator.AHI
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Foreign.R71061
VBA32Backdoor.Tishop
ALYacGen:Variant.Zusy.51778
MAXmalware (ai score=99)
MalwarebytesMalware.AI.4200627027
APEXMalicious
RisingTrojan.Injector!1.65E8 (CLOUD)
YandexTrojan.LockScreen!ax1gNH+1UXs
SentinelOneStatic AI – Malicious PE
eGambitGeneric.Malware
FortinetW32/Kryptik.BA!tr
AVGSf:Crypt-CG [Trj]
PandaGeneric Malware
MaxSecureTrojan.Malware.1728101.susgen

How to remove Malware.AI.4200627027?

Malware.AI.4200627027 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment