Malware

Malware.AI.4250529992 removal guide

Malware Removal

The Malware.AI.4250529992 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4250529992 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Unconventionial language used in binary resources: Spanish (Modern)
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.4250529992?


File Info:

name: B6BA7B583B27A4316DE4.mlw
path: /opt/CAPEv2/storage/binaries/87b4ba471b658cd80a771ce80c1a0450092ed2e560e74f0fea3e87c05fa90dfd
crc32: 8548862C
md5: b6ba7b583b27a4316de4eed7a6695b9f
sha1: 76f51e471a915f87ae8aa396d27dd2d6374e3d38
sha256: 87b4ba471b658cd80a771ce80c1a0450092ed2e560e74f0fea3e87c05fa90dfd
sha512: f4d0579045ab9c078c19f3995d2b98807b0c6c18e033eb8bc99b610ef2a977b683cf00ee7b8d9b6d51e3e226a6b48a41396942410bf82b30bcbaf683724d0227
ssdeep: 768:yYJZGxxkiWP2KKrCwd2rC2zc2W+vKGTuHG2F08:ygiY/Kr3dsC0wKH8
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19D13211BAD0BC066F1494CB0969242D66EBD2C3335827D6FEB41BE5CA8F054A74F0A77
sha3_384: 3c480dd4f73e0d0c50f82104b8362d6a8f2287cabc652e9bbb01672978bb658bad0e337e0d374c6dfc098115326dc661
ep_bytes: 6808174000e8f0ffffff000000000000
timestamp: 2009-12-20 21:13:41

Version Info:

Translation: 0x0c0a 0x04b0
ProductName: MC
FileVersion: 1.05.0006
ProductVersion: 1.05.0006
InternalName: stub
OriginalFilename: stub.exe

Malware.AI.4250529992 also known as:

LionicTrojan.Win32.VB.l4bq
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Fragtor.113297
ClamAVWin.Trojan.Sdbot-149
FireEyeGeneric.mg.b6ba7b583b27a431
ALYacGen:Variant.Fragtor.113297
CylanceUnsafe
VIPREGen:Variant.Fragtor.113297
Sangfor[MICROSOFT VISUAL BASIC V6.0]
K7AntiVirusTrojan ( 000c65161 )
AlibabaTrojan:Win32/Inject.002ba886
K7GWTrojan ( 000c65161 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/VBInject.CC.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.GP
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Inject.giuv
BitDefenderGen:Variant.Fragtor.113297
NANO-AntivirusTrojan.Win32.SdBot.crkzgf
AvastWin32:VB-ABHU [Drp]
TencentMalware.Win32.Gencirc.114c2496
Ad-AwareGen:Variant.Fragtor.113297
EmsisoftGen:Variant.Fragtor.113297 (B)
ComodoBackdoor.Win32.SdBot.koy@2q2tyb
F-SecureTrojan.TR/Dropper.Gen
DrWebBackDoor.IRC.Sdbot.15719
ZillyaBackdoor.SdBot.Win32.10925
TrendMicroMal_Poison3
McAfee-GW-EditionGenericRXSL-WT!B6BA7B583B27
Trapminesuspicious.low.ml.score
SophosML/PE-A + Mal/VBInject-AK
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Fragtor.113297
JiangminTrojan.Bcex.ael
WebrootW32.Sdbot.Gen
AviraTR/Dropper.Gen
MAXmalware (ai score=100)
Antiy-AVLTrojan[Backdoor]/Win32.SdBot
ArcabitTrojan.Fragtor.D1BA91
ViRobotBackdoor.Win32.A.IRCBot.40960.S
ZoneAlarmTrojan.Win32.Inject.giuv
MicrosoftTrojan:Win32/Toga!rfn
GoogleDetected
AhnLab-V3Spyware/Win32.Zbot.R22011
McAfeeGenericRXSL-WT!B6BA7B583B27
VBA32Trojan.VBO.06627
MalwarebytesMalware.AI.4250529992
TrendMicro-HouseCallMal_Poison3
RisingBackdoor.Noancooe!8.176 (TFE:3:2hVdtfA2uGL)
YandexWorm.SdBot!bglFb7/zej8
IkarusVirTool.Win32.VBInject.C
MaxSecureTrojan.Malware.868465.susgen
FortinetW32/VBKrypt.C!tr
BitDefenderThetaAI:Packer.62ADDD1D1E
AVGWin32:VB-ABHU [Drp]
Cybereasonmalicious.83b27a
PandaBck/Sdbot.JED.worm

How to remove Malware.AI.4250529992?

Malware.AI.4250529992 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment