Malware

Malware.AI.4238343978 removal guide

Malware Removal

The Malware.AI.4238343978 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4238343978 virus can do?

  • Presents an Authenticode digital signature
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.4238343978?


File Info:

name: E404EDA918015A9AAC7D.mlw
path: /opt/CAPEv2/storage/binaries/22e95baef0dceaeab45618f6a381aa8790039d55ecbc208dfd9fadc0d67415ee
crc32: D110FC07
md5: e404eda918015a9aac7d4f76144222b5
sha1: d3ab3bb3e7f69be84fa0ed35caf57d692330975d
sha256: 22e95baef0dceaeab45618f6a381aa8790039d55ecbc208dfd9fadc0d67415ee
sha512: 8e435fb73f3ff3842d75c6f6191427441c0470d007a9dc2f1bf6db0a7dae004f74a9dd15fe3176d096deb70e8b2ec86ed540c35f4a455192f5c2c770110bc8a3
ssdeep: 49152:qtiggggMZybOEfk77Ujc6vp5KQ6Ux/WJ0KP/hk8IQgZmthmzT7WN+:6xyQAJpEQ6ou0gh9IQy
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T127B5C012FBC185B2E593063591BE4B7F4D3EAA201338D4D397E029659D312E2BA3F395
sha3_384: 6949a2c385f11b860bab3973549ea071e78b72333bb3d5df45c6fcb944031b1616999efc18fb646b2ef42299a51ec4ef
ep_bytes: e8740f0000e97afeffff8b4df464890d
timestamp: 2021-07-05 08:56:40

Version Info:

CompanyName: 沧州微酷网络科技有限公司
FileDescription: Royal.exe
FileVersion: 1.0.1.210705
InternalName: Royal.exe
LegalCopyright: Copyright(C)2021 沧州微酷网络科技有限公司
OriginalFilename: Royal.exe
ProductName: Royal.exe
ProductVersion: 1.0.1.210705
Translation: 0x0804 0x04b0

Malware.AI.4238343978 also known as:

BkavW32.AIDetect.malware1
LionicAdware.Win32.MiniPages.2!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Lazy.22341
McAfeeArtemis!E404EDA91801
MalwarebytesMalware.AI.4238343978
K7AntiVirusAdware ( 005693e61 )
AlibabaAdWare:Win32/MiniPages.01be0502
K7GWAdware ( 005693e61 )
SymantecML.Attribute.HighConfidence
APEXMalicious
Kasperskynot-a-virus:HEUR:AdWare.Win32.MiniPages.gen
BitDefenderGen:Variant.Lazy.22341
AvastWin32:AdwareX-gen [Adw]
RisingAdware.Agent!1.D0B7 (CLASSIC)
Ad-AwareGen:Variant.Lazy.22341
SophosGeneric PUA ND (PUA)
ZillyaAdware.MiniPages.Win32.186
McAfee-GW-EditionArtemis!PUP
FireEyeGeneric.mg.e404eda918015a9a
EmsisoftGen:Variant.Lazy.22341 (B)
IkarusTrojan.APTLuminousmoth
GDataGen:Variant.Lazy.22341
JiangminAdWare.MiniPages.ci
ArcabitTrojan.Lazy.D5745
MicrosoftTrojan:Win32/Wacatac.A!ml
CynetMalicious (score: 100)
ALYacGen:Variant.Lazy.22341
MAXmalware (ai score=88)
VBA32BScope.Adware.Softcnapp
TrendMicro-HouseCallTROJ_GEN.R002H0CKJ21
Tencent[Pua:]Adware.Win32.MiniPages.16000085
YandexPUA.MiniPages!KFp2DIQW7PQ
eGambitPE.Heur.InvalidSig
FortinetRiskware/Application
AVGWin32:AdwareX-gen [Adw]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Malware.AI.4238343978?

Malware.AI.4238343978 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment