Malware

Malware.AI.4237239908 removal

Malware Removal

The Malware.AI.4237239908 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4237239908 virus can do?

  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Malware.AI.4237239908?


File Info:

name: D2EC533F8B40A8224D79.mlw
path: /opt/CAPEv2/storage/binaries/fc9bb9746aaa4e07944b2c1338d26ac852531a6e6c97e98f6a56202d27ff607c
crc32: E9AE4228
md5: d2ec533f8b40a8224d79c87c2291f943
sha1: f305fa4c5c8525e853fbdbcf5c8cedad9ba08fd2
sha256: fc9bb9746aaa4e07944b2c1338d26ac852531a6e6c97e98f6a56202d27ff607c
sha512: 24df31379bbf5b0580fab898847ecbf22be4a7df5447529ef4b1067bfb58f08154cbc0e69d2c20c7fb1d06b4a2a5d4abe6de0077f8ea00a456ab3ee2e84a7983
ssdeep: 12288:vFL6XmzfzcQ2Qh/pQFci/ZjUABEHONsLUjCpFscOtZJ7fA:vgmzCQhaFc0SUUsxY
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10AF43A4D2A88EF57C17E07B174E7DD848B788145DA9BBBBE58D240E02506B12BE1C4BF
sha3_384: 5fe97be7962874b5268b9c0c691ce4c26aac9a85dbdb828d195b813594d9387775e47fd963c3de63af3e73942f31e32c
ep_bytes: ff250020400000000000000000000000
timestamp: 2050-09-27 14:22:06

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: ThunderFox
FileVersion: 1.0.0.0
InternalName: ThunderFox.exe
LegalCopyright: Copyright © 2020
LegalTrademarks:
OriginalFilename: ThunderFox.exe
ProductName: ThunderFox
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.4237239908 also known as:

BkavW32.AIDetectNet.01
LionicTrojan.MSIL.Stealer.i!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.48913711
ALYacTrojan.GenericKD.48913711
CylanceUnsafe
SangforInfostealer.MSIL.Stealer.gen
AlibabaTrojanPSW:MSIL/Stealer.f1c8024a
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Spy.Agent.AES
TrendMicro-HouseCallTROJ_GEN.R002H0CDM22
Paloaltogeneric.ml
KasperskyHEUR:Trojan-PSW.MSIL.Stealer.gen
BitDefenderTrojan.GenericKD.48913711
AvastWin32:Trojan-gen
TencentMsil.Trojan-qqpass.Qqrob.Wska
Ad-AwareTrojan.GenericKD.48913711
EmsisoftTrojan.GenericKD.48913711 (B)
F-SecureHeuristic.HEUR/AGEN.1203847
DrWebTrojan.PWS.Stealer.32203
McAfee-GW-EditionRDN/Generic PWS.y
SentinelOneStatic AI – Malicious PE
FireEyeTrojan.GenericKD.48913711
SophosMal/Generic-S
APEXMalicious
GDataWin32.Trojan.Agent.GKXA8O
AviraHEUR/AGEN.1203847
MAXmalware (ai score=87)
Antiy-AVLTrojan/Generic.ASMalwS.356C082
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
McAfeeRDN/Generic PWS.y
MalwarebytesMalware.AI.4237239908
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.AES!tr.spy
AVGWin32:Trojan-gen
Cybereasonmalicious.c5c852
PandaTrj/GdSda.A

How to remove Malware.AI.4237239908?

Malware.AI.4237239908 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment