Malware

Malware.AI.4226941294 removal

Malware Removal

The Malware.AI.4226941294 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4226941294 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Malware.AI.4226941294?


File Info:

name: C16C0B69E770CB6F657A.mlw
path: /opt/CAPEv2/storage/binaries/3d1072bf0f14eb8050b0fa969b406daeda6aef5dc16867475c83ec246a40f4f9
crc32: 221782AB
md5: c16c0b69e770cb6f657a35eaa3981516
sha1: ea4ff3cafc476a57fb50c2cbd0497ac2339f842a
sha256: 3d1072bf0f14eb8050b0fa969b406daeda6aef5dc16867475c83ec246a40f4f9
sha512: cecb23268b8fdf43bc104beaf0dcac59e1853828c9ba6b0494dcf49c6042176121b669f84bd0d02caf837bbf1420910c450a9a943af50ea84c2302b787c8ca03
ssdeep: 3072:g6RiNesobeGagWxZzDMVXnRzDMVXnIe1OW7LYp7itiYaWyJzDMVVnd:7sIgfoXRfoXhH0foV
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A5B4D51F6284AA71F429263674134C01F3E2AF92A26DCDC9BD84F2D954BAEC0C7DF651
sha3_384: b102fbb4a62615c82535a5129cf2257e2c8a6a69f0937a81b52572c222a106b87b1f81cc96a154f4efc0c78b9e23b82d
ep_bytes: ff250020400001020304050607080901
timestamp: 2045-07-20 10:55:32

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: Bluespy Crypter
FileVersion: 1.0.0.0
InternalName: Bluespy Crypter.exe
LegalCopyright: Copyright © 2022
LegalTrademarks:
OriginalFilename: Bluespy Crypter.exe
ProductName: Bluespy Crypter
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.4226941294 also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
McAfeeRDN/Generic Dropper
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005850dc1 )
BitDefenderGen:Heur.MSIL.Binder.22
K7GWTrojan ( 005850dc1 )
Cybereasonmalicious.9e770c
SymantecML.Attribute.HighConfidence
ESET-NOD32multiple detections
APEXMalicious
ClamAVWin.Trojan.Generic-6893439-0
KasperskyUDS:DangerousObject.Multi.Generic
AlibabaBackdoor:MSIL/Bobik.2d92a57e
MicroWorld-eScanGen:Heur.MSIL.Binder.22
RisingTrojan.Generic/MSIL@AI.95 (RDM.MSIL:aeMMlNvmYCVUUx4PDnUhig)
Ad-AwareGen:Heur.MSIL.Binder.22
EmsisoftGen:Heur.MSIL.Binder.22 (B)
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.MulDropNET.21
ZillyaDropper.Agent.Win32.469488
TrendMicroTROJ_GEN.R03BC0PBD22
McAfee-GW-EditionRDN/Generic Dropper
FireEyeGeneric.mg.c16c0b69e770cb6f
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.Gen
MAXmalware (ai score=86)
Antiy-AVLTrojan/Generic.ASMalwS.3520AF8
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GridinsoftRansom.Win32.Bladabindi.sa
ArcabitTrojan.MSIL.Binder.22
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Heur.MSIL.Binder.22
AhnLab-V3Trojan/Win.Generic.C4969846
VBA32TScope.Trojan.MSIL
ALYacGen:Heur.MSIL.Binder.22
MalwarebytesMalware.AI.4226941294
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R03BC0PBD22
TencentWin32.Trojan.Generic.Swau
IkarusTrojan.MSIL.HackTool
FortinetMSIL/Agent.AHC!tr
BitDefenderThetaGen:NN.ZemsilF.34232.Em0@aKMwL9b
AVGWin32:DropperX-gen [Drp]
AvastWin32:DropperX-gen [Drp]
MaxSecureTrojan.Malware.300983.susgen

How to remove Malware.AI.4226941294?

Malware.AI.4226941294 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment