Malware

Malware.AI.4213835492 removal instruction

Malware Removal

The Malware.AI.4213835492 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4213835492 virus can do?

  • Detected script timer window indicative of sleep style evasion
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Russian
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs
  • Attempts to interact with an Alternate Data Stream (ADS)

How to determine Malware.AI.4213835492?


File Info:

crc32: 50D47F59
md5: f30183f24d97db5f8338e18b7af43ab6
name: F30183F24D97DB5F8338E18B7AF43AB6.mlw
sha1: 9653baa538dbc8f151dcadee6876d860f4ac194b
sha256: 3038ec5d899a6e321a2079297cbadde24f607d281f5358f21f55cf37a411107b
sha512: 204d7271eb094395f1a95f051705df6bd692d35f2bed5b599cf58f1707d43e2d2961177c6a472cf8e92125562a2111b7e8e198a811c41a4862cae0e527f4320f
ssdeep: 24576:2hvJVJdMrFUtK7pt7onGte3g7gtV5m0afMoF+lIfR+lGWJDXLdg:+3d6UtKNBy342VI0mFA0EJzLO
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.4213835492 also known as:

Elasticmalicious (high confidence)
DrWebBackDoor.QuasarNET.5
CAT-QuickHealBackdoor.MSIL
ALYacTrojan.MSIL.Basic.8.Gen
SangforTrojan.Win32.Save.a
CyrenW32/Trojan.OHQQ-8156
ESET-NOD32a variant of MSIL/Spy.Agent.DEK
APEXMalicious
AvastWin32:HacktoolX-gen [Trj]
CynetMalicious (score: 100)
KasperskyUDS:Backdoor.MSIL.LightStone.gen
BitDefenderTrojan.Uztuby.19
MicroWorld-eScanTrojan.Uztuby.19
SophosGeneric ML PUA (PUA)
ComodoMalware@#1vmt59ag9h3c1
F-SecureTrojan.TR/Spy.Agent.erenu
BitDefenderThetaGen:NN.ZemsilF.34088.Xm0@aiGCFHk
TrendMicroPUA.MSIL.GameHack.AE
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.f30183f24d97db5f
EmsisoftTrojan.Uztuby.19 (B)
SentinelOneStatic AI – Malicious SFX
AviraSPR/ExploitCheat.A
eGambitUnsafe.AI_Score_89%
Antiy-AVLHackTool/MSIL.Gamehack
MicrosoftTrojan:MSIL/SpyNoon.RTU!MTB
GridinsoftTrojan.Win32.Downloader.sa
ArcabitTrojan.MSIL.Basic.8.Gen
ZoneAlarmHEUR:Backdoor.MSIL.LightStone.gen
GDataWin32.Trojan.BSE.1CL7UZW
MAXmalware (ai score=85)
VBA32Backdoor.MSIL.LightStone
MalwarebytesMalware.AI.4213835492
TrendMicro-HouseCallPUA.MSIL.GameHack.AE
YandexTrojanSpy.Agent!Cf+cXupBr30
IkarusTrojan.Win32.Agent
FortinetPossibleThreat
AVGWin32:HacktoolX-gen [Trj]

How to remove Malware.AI.4213835492?

Malware.AI.4213835492 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment