Malware

Malware.AI.4242310921 removal tips

Malware Removal

The Malware.AI.4242310921 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4242310921 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Attempted to write directly to a physical drive
  • Deletes executed files from disk
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Malware.AI.4242310921?


File Info:

name: D33BB2A35695B6628426.mlw
path: /opt/CAPEv2/storage/binaries/7425c05743a6d1f0a9199ed75226eb5cf1e7806753261436f635e51bfea83da0
crc32: EE04C024
md5: d33bb2a35695b66284268cc6e3e8872e
sha1: f39a5bd2a1339fb3fcd33fa6d46b08feafadaac2
sha256: 7425c05743a6d1f0a9199ed75226eb5cf1e7806753261436f635e51bfea83da0
sha512: 4edacffe9a5c3472755a919454b467ef04fb2965327d10ca13664f4436741d48689e7d30c6cdd7c5e88f34755347ad2e8b69873617c7d2507a26b79f64cdb795
ssdeep: 24576:6wowTBGkbQR32hVQ15cnFK4k06yNxaKt84gyUF52DVNKz6iVQN0tMy9z/:6wGTMA15cnFpkFyNxaT4g1mZNKhVZ/
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E8152303B7F582BDE9B796794DA12AB5E5F6FA300064C6036BC009C93F35587EE65283
sha3_384: 63223807763f55cb0b46a7a9569f1aee784e95782e56f191d77aa3dacabbe048b9491da544b8b9096c8a6bf58a67e194
ep_bytes: 558bec6aff68a050410068f024410064
timestamp: 2010-11-19 13:00:39

Version Info:

0: [No Data]

Malware.AI.4242310921 also known as:

BkavW32.Common.192BCCD6
LionicTrojan.Win32.FlyStudio.4!c
FireEyeGeneric.mg.d33bb2a35695b662
CAT-QuickHealHacktool.Flystudio.16558
SkyhighBehavesLike.Win32.Dropper.dc
McAfeeArtemis!D33BB2A35695
Cylanceunsafe
SangforPUP.Win32.FlyStudio.V31n
K7AntiVirusTrojan ( 0007fbf81 )
K7GWTrojan ( 0007fbf81 )
Cybereasonmalicious.2a1339
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
NANO-AntivirusRiskware.Win32.StartPage1.jyqpme
RisingTrojan.Generic@AI.93 (RDML:untdnXqtfJP/jq1Ov5h5EQ)
DrWebTrojan.StartPage1.60667
SophosGeneric Reputation PUA (PUA)
VaristW32/Trojan.CLL.gen!Eldorado
Antiy-AVLTrojan/Win32.FlyStudio.a
Kingsoftmalware.kb.a.904
XcitiumMalware@#sjh3239utzlf
MicrosoftPUA:Win32/Presenoker
BitDefenderThetaGen:NN.ZexaF.36792.6t0@aazcH1lb
DeepInstinctMALICIOUS
VBA32BScope.Worm.Nuj
MalwarebytesMalware.AI.4242310921
TrendMicro-HouseCallTROJ_GEN.R002V01KA23
IkarusTrojan-Dropper.Agent
MaxSecureTrojan.Malware.3307117.susgen
AVGWin32:Malware-gen
AvastWin32:Malware-gen

How to remove Malware.AI.4242310921?

Malware.AI.4242310921 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment