Malware

Should I remove “Malware.AI.4207607681”?

Malware Removal

The Malware.AI.4207607681 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4207607681 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Uses suspicious command line tools or Windows utilities
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.4207607681?


File Info:

name: 60C44E4C8652425B4866.mlw
path: /opt/CAPEv2/storage/binaries/27345c2262bc207f30a3beeaba023ca91f048cc6d510f289d627a5304d6024b6
crc32: 2BC733AB
md5: 60c44e4c8652425b4866f4cc7487d07e
sha1: 21118a549738cfd4bb6554e47fffd27f450e39f1
sha256: 27345c2262bc207f30a3beeaba023ca91f048cc6d510f289d627a5304d6024b6
sha512: 251cb66915b0dcd5599224d20272e9fe33943c302c8250560d11c31d1202139e9aebf5dfc96698141f81df57da8a82d447ffcff296f19dc28c68b989c3bde84c
ssdeep: 768:73GUybdwHyyE8udstjxEg3ZjyakJiTH7D:723Ky/80JMkivD
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AF038B47AF4C8C92D3E789B91548856EC7F963343C127D87D31486C225FAAE1A93D2CB
sha3_384: cbcec3d46ff696e0cfd6e1a9092138ac1447ab441e64f9ebfc5bfb75fa6671fa8b40024832b39d45da8a770b90490ee9
ep_bytes: 558bec6aff688831400068101f400064
timestamp: 2009-06-16 04:42:26

Version Info:

0: [No Data]

Malware.AI.4207607681 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Magania.trm9
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Onlinegames.14.D22948AE
FireEyeGeneric.mg.60c44e4c8652425b
CAT-QuickHealTrojan.Agent.A5
SkyhighBehavesLike.Win32.Generic.nt
McAfeeGeneric Dropper.eb
MalwarebytesMalware.AI.4207607681
VIPREGeneric.Onlinegames.14.D22948AE
SangforSuspicious.Win32.Save.ins
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderGeneric.Onlinegames.14.D22948AE
K7GWTrojan ( 0040f1681 )
K7AntiVirusTrojan ( 0040f1681 )
BitDefenderThetaAI:Packer.42081F0D1B
SymantecInfostealer.Gampass
ESET-NOD32a variant of Win32/PSW.OnLineGames.NRD
APEXMalicious
ClamAVWin.Trojan.Crypt-255
KasperskyTrojan-GameThief.Win32.Magania.biht
AlibabaTrojanPSW:Win32/Magania.d50039bc
NANO-AntivirusTrojan.Win32.Magania.iake
ViRobotTrojan.Win32.A.PSW-Magania.23552.E
RisingStealer.OnlineGames!1.9ECD (CLASSIC)
TACHYONTrojan-PWS/W32.WebGame.38507
SophosTroj/Lineag-BG
BaiduWin32.Trojan-PSW.OLGames.ab
F-SecureTrojan.TR/Crypt.ULPM.Gen
DrWebTrojan.PWS.Wsgame.49648
ZillyaTrojan.OnLineGames.Win32.209761
TrendMicroTSPY_LOLYDA.SMC
Trapminemalicious.high.ml.score
EmsisoftGeneric.Onlinegames.14.D22948AE (B)
IkarusTrojan-GameThief.Win32.Magania
JiangminTrojan/PSW.Magania.tlp
WebrootW32.Magania
GoogleDetected
AviraTR/Crypt.ULPM.Gen
VaristW32/OnlineGames.CA.gen!Eldorado
Antiy-AVLTrojan[GameThief]/Win32.Magania
Kingsoftmalware.kb.a.1000
MicrosoftPWS:Win32/Lolyda.AT
XcitiumTrojWare.Win32.PSW.OnLineGames.~GMG@f0k3u
ArcabitGeneric.Onlinegames.14.D22948AE
ZoneAlarmTrojan-GameThief.Win32.Magania.biht
GDataGeneric.Onlinegames.14.D22948AE
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Magania.R16960
VBA32TrojanPSW.Magania
ALYacGeneric.Onlinegames.14.D22948AE
MAXmalware (ai score=100)
DeepInstinctMALICIOUS
Cylanceunsafe
PandaTrj/Lineage.LIB
TrendMicro-HouseCallTSPY_LOLYDA.SMC
TencentTrojan.Win32.OnlineGames.tbn
YandexTrojan.GenAsa!yqXow8yo84g
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.GameThief.Magania.biht
FortinetW32/OnlineGames.DRP!tr.pws
AVGWin32:GenMalicious-HZX [Trj]
Cybereasonmalicious.49738c
AvastWin32:GenMalicious-HZX [Trj]

How to remove Malware.AI.4207607681?

Malware.AI.4207607681 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment