Malware

Malware.AI.4214436804 malicious file

Malware Removal

The Malware.AI.4214436804 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4214436804 virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Malware.AI.4214436804?


File Info:

name: 4EED28CD2FC5FA09B827.mlw
path: /opt/CAPEv2/storage/binaries/06c8ce07804cb7b25718d0dd599d39c5232d0f97c52a7eb13557ce7f633f6a15
crc32: 4F71499B
md5: 4eed28cd2fc5fa09b827b25b6738bbb8
sha1: 457e415b3594c2cc8bbc18c4182bc2b66ba37611
sha256: 06c8ce07804cb7b25718d0dd599d39c5232d0f97c52a7eb13557ce7f633f6a15
sha512: 087bdef41d516096d241c76eb2606186f9e4761a6455aa3e514a57af87226d4e3c547b2f4bd152aaa218f2bcdd9b93f6f77c96697f9fc1e3357ca8b57382e245
ssdeep: 12288:c7LZp9OPFLsGyPFLsGvd27fBnxpOT5PtLsG:MZ7OPFbyPFbv07fBxKP9b
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E5F4AE22625BC951D7B5C33DC062062CD3FE680ED2D2DECF32A864E96D5A2D6FA1504F
sha3_384: c14fe2672f3067187fea48f929c3caac3ccab75381904691b6c5bf7e64f6ac62d43c06b6a35050b037d78b07e3824f2a
ep_bytes: ff250020400000000000000000000000
timestamp: 2047-03-10 02:24:53

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: Instagram Hunters V10 By Abbas Coder
FileVersion: 1.0.0.0
InternalName: JaDox Hunter.exe
LegalCopyright: Copyright © 2020
LegalTrademarks:
OriginalFilename: JaDox Hunter.exe
ProductName: Instagram Hunters V10 By Abbas Coder
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.4214436804 also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.MSILPerseus.227651
FireEyeGeneric.mg.4eed28cd2fc5fa09
McAfeeRDN/Generic PUP.z
K7AntiVirusHacktool ( 00569daa1 )
AlibabaTrojan:MSIL/Generic.00b152cf
K7GWHacktool ( 00569daa1 )
Cybereasonmalicious.d2fc5f
BitDefenderThetaGen:NN.ZemsilF.34084.Wm0@aG0ovTk
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/HackTool.BruteForce.YX
TrendMicro-HouseCallTROJ_GEN.R002C0PL421
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.MSILPerseus.227651
SUPERAntiSpywareTrojan.Agent/Gen-MSILPerseus
AvastWin32:Trojan-gen
Ad-AwareGen:Variant.MSILPerseus.227651
ZillyaTrojan.Generic.Win32.1639282
TrendMicroTROJ_GEN.R002C0PL421
McAfee-GW-EditionRDN/Generic PUP.z
EmsisoftGen:Variant.MSILPerseus.227651 (B)
GDataGen:Variant.MSILPerseus.227651
Antiy-AVLTrojan/Generic.ASMalwS.34DE82F
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
ALYacGen:Variant.MSILPerseus.227651
MAXmalware (ai score=88)
MalwarebytesMalware.AI.4214436804
APEXMalicious
TencentWin32.Trojan.Generic.Pikr
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetMSIL/BruteForce.YX!tr
AVGWin32:Trojan-gen
PandaTrj/GdSda.A

How to remove Malware.AI.4214436804?

Malware.AI.4214436804 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment