Malware

What is “Malware.AI.4222900188”?

Malware Removal

The Malware.AI.4222900188 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4222900188 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Attempts to delete volume shadow copies
  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Creates a copy of itself
  • Uses suspicious command line tools or Windows utilities

How to determine Malware.AI.4222900188?


File Info:

crc32: B07A6460
md5: 859c0ea42cf6c5cf9197327900736d34
name: 859C0EA42CF6C5CF9197327900736D34.mlw
sha1: 6b125f4b4223a20f18466350ca852dd630b28cfd
sha256: abf204e5c131ec978d1f744b9645e9e2d21d8429ccea87e160b59568704a475b
sha512: 448e3afdc03c38a7f2aaabfa2d83e39cd5f4da82ec021050b856c02ad4a7bf2319a573828ef5ec0fb406b1c67de9ca4d871e58606602cccd2dca1bf6f9a2d780
ssdeep: 6144:HwVx2a+XPcP/VrKFrnyMHTAO9IfmfvaB8FtwQI+YbrCMeAtdtS+zdXY:HMx2hEP/+2MHTnL7FSTr6AswXY
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Assembly Version: 3.2.4.4
LegalCopyright: R-Tools Technology Inc. Copyright xa9. All rights reserved.
InternalName: ArgumentPredominantly
FileVersion: 3.2.4.4
CompanyName: R-Tools Technology Inc.
PrivateBuild: 3.2.4.4
LegalTrademarks: R-Tools Technology Inc. Copyright xa9. All rights reserved.
Comments: Inclusive Verify Serverx97are
ProductName: ArgumentPredominantly
Languages: English
ProductVersion: 3.2.4.4
FileDescription: Inclusive Verify Serverx97are
OriginalFilename: ArgumentPredominantly
Translation: 0x0409 0x04b0

Malware.AI.4222900188 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0055e3ef1 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.3953
CynetMalicious (score: 100)
CylanceUnsafe
ZillyaTrojan.Foreign.Win32.55005
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 0055e3ef1 )
Cybereasonmalicious.b4223a
CyrenW32/TeslaCrypt.G.gen!Eldorado
SymantecTrojan Horse
ESET-NOD32Win32/Filecoder.Crysis.H
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Foreign.ngjw
NANO-AntivirusTrojan.Win32.Foreign.faliyq
TencentWin32.Trojan.Foreign.Eaxg
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaE.34758.yu0@aajNdFbi
VIPRETrojan.Win32.Generic.pak!cobra
TrendMicroMal_MiliCry-1c
McAfee-GW-EditionBehavesLike.Win32.Dropper.fc
FireEyeGeneric.mg.859c0ea42cf6c5cf
SentinelOneStatic AI – Suspicious PE
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1123834
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.1B2A7BC
MicrosoftRansom:Win32/Troldesh!rfn
Acronissuspicious
McAfeeArtemis!859C0EA42CF6
VBA32BScope.Trojan.Nymaim
MalwarebytesMalware.AI.4222900188
PandaTrj/GdSda.A
TrendMicro-HouseCallMal_MiliCry-1c
RisingTrojan.Generic@ML.93 (RDML:bsfU/OJaxew9kwMT4AfLlA)
YandexTrojan.Foreign!sLz+KSYBM+E
IkarusTrojan.Win32.Filecoder
FortinetW32/Kryptik.FQUM!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Malware.AI.4222900188?

Malware.AI.4222900188 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment