Malware

Malware.AI.4236982275 removal tips

Malware Removal

The Malware.AI.4236982275 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4236982275 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Malware.AI.4236982275?


File Info:

name: F0F10701016B23A3F8A8.mlw
path: /opt/CAPEv2/storage/binaries/a75a56fb398127d28b4f201e2550c536e19290b2a1a3aca7714823a86dd36858
crc32: 3F6B48FC
md5: f0f10701016b23a3f8a820de773a0de9
sha1: 93045bcbdf8fae81246089b25766ad78c3ec267b
sha256: a75a56fb398127d28b4f201e2550c536e19290b2a1a3aca7714823a86dd36858
sha512: 51cbdd7b4d5a7c33aae0ceb5deccd6145c8f05bd67fbaf17602be045cd6d45430be2cd7f58dc0af0cc95f628d0ab51e1fb6ee6cf411569f4781bc9c1caa63c91
ssdeep: 6144:a8tLdASyxepoDwpHtlD7y3C+SYN3GfKNjyU5a:zLulw5ejS2H5a
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T113342337531F14E0FC796B37891E5E6AA44A3C1A3B2193B2F873714F4D382A654481ED
sha3_384: bcb1dff7c1dd5e0d118571e399fc75bdff97f442c582a3ba79b94ff1df0374e32431acefa0a39f5e33c5d04b2d55cbad
ep_bytes: 60be00504d008dbe00c0f2ff57eb0b90
timestamp: 2019-12-31 14:43:33

Version Info:

Translation: 0x0409 0x04b0
CompanyName: SysTec - Tecnologia da Informação
ProductName: ConsolidadorDadosNewVersion
FileVersion: 19.12.0003
ProductVersion: 19.12.0003
InternalName: ConsolidadorVendas
OriginalFilename: ConsolidadorVendas.exe

Malware.AI.4236982275 also known as:

LionicTrojan.Win32.QQFish.ljwt
MicroWorld-eScanTrojan.GenericKD.33535088
FireEyeTrojan.GenericKD.33535088
McAfeeRDN/Generic.grp
CylanceUnsafe
Cybereasonmalicious.1016b2
APEXMalicious
Paloaltogeneric.ml
BitDefenderTrojan.GenericKD.33535088
AvastWin32:Malware-gen
Ad-AwareTrojan.GenericKD.33535088
McAfee-GW-EditionBehavesLike.Win32.PWSSpyeye.dc
EmsisoftTrojan.GenericKD.33535088 (B)
GDataTrojan.GenericKD.33535088
Antiy-AVLTrojan/Generic.ASMalwS.2FE1A19
GridinsoftRansom.Win32.Occamy.sa
ViRobotTrojan.Win32.Z.Agent.233472.BKX
MicrosoftTrojan:Win32/Occamy.CA7
MAXmalware (ai score=87)
MalwarebytesMalware.AI.4236982275
TrendMicro-HouseCallTROJ_GEN.R002H0CKT21
FortinetW32/PossibleThreat
AVGWin32:Malware-gen
PandaTrj/GdSda.A

How to remove Malware.AI.4236982275?

Malware.AI.4236982275 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment