Malware

Malware.AI.4243410664 removal tips

Malware Removal

The Malware.AI.4243410664 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4243410664 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • Enumerates running processes
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.4243410664?


File Info:

name: 968FDC589AA7E3679D88.mlw
path: /opt/CAPEv2/storage/binaries/dc9f3abdd2a677e612850a1471acb33dffac82c896a6af1ccb14cde96eddd264
crc32: 964E0D9E
md5: 968fdc589aa7e3679d8801d8275ab2f8
sha1: 90bbe2f165e1008d7500bfa9a9f3333869db9adb
sha256: dc9f3abdd2a677e612850a1471acb33dffac82c896a6af1ccb14cde96eddd264
sha512: bc5594a3edca378baffa8aa1054be496d45a3647d8e6078b96f9dd5b704aac092b8978a2b95814d3dd93d92138606b181bd915e81e07708abf6cd54349615373
ssdeep: 49152:PkxOm+7TjsPnztyDMmaNPYR6u/LMkoIqJbWtTjGiONE:PJotyDCYRXLMkDtTj/j
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T13C95D09923A881A9FEB7E077CA12C257C6B17C8A4277871F01E06E767F736711A1E311
sha3_384: 7c07a6c723b2b6bb9038d303bc9748d7800cac69051479c07c94341c6f70e8b4166862133eaec9d120dcdeaf3aed3f2c
ep_bytes: 4883ec28e8bfb300004883c428e936fe
timestamp: 2021-12-11 05:12:11

Version Info:

FileVersion: 3.3.14.5
Comments: http://www.autoitscript.com/autoit3/
FileDescription: RSImageX2.83
ProductVersion: 3.3.14.5
LegalCopyright: ©1999-2018 Jonathan Bennett & AutoIt Team
Translation: 0x0409 0x04b0

Malware.AI.4243410664 also known as:

MicroWorld-eScanAIT:Trojan.Nymeria.4550
FireEyeAIT:Trojan.Nymeria.4550
McAfeeArtemis!968FDC589AA7
CylanceUnsafe
Cybereasonmalicious.89aa7e
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Injector.Autoit.SQ
APEXMalicious
ClamAVWin.Malware.Drivepack-9884589-1
BitDefenderAIT:Trojan.Nymeria.4550
AvastFileRepMalware
Ad-AwareAIT:Trojan.Nymeria.4550
McAfee-GW-EditionBehavesLike.Win64.TrojanAitInject.tc
EmsisoftAIT:Trojan.Nymeria.4550 (B)
GDataAIT:Trojan.Nymeria.4550
AviraHEUR/AGEN.1207879
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 99)
ALYacAIT:Trojan.Nymeria.4550
MAXmalware (ai score=81)
MalwarebytesMalware.AI.4243410664
TencentWin32.Trojan.Nymeria.Htvz
MaxSecureTrojan.Malware.300983.susgen
FortinetAutoIt/Injector.FO!tr
AVGFileRepMalware

How to remove Malware.AI.4243410664?

Malware.AI.4243410664 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment