Malware

Malware.AI.4254560878 information

Malware Removal

The Malware.AI.4254560878 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4254560878 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Malware.AI.4254560878?


File Info:

name: C12B3358E74EF93858B2.mlw
path: /opt/CAPEv2/storage/binaries/3a2394bd0e26fd262133c1f3b3dfc0998d60a71c59c7f6c4ada5d84ec39934b2
crc32: CA391E26
md5: c12b3358e74ef93858b2d10373322bc0
sha1: 8d1cadbfd7d72f5e3ac1321ea90603930f9b6534
sha256: 3a2394bd0e26fd262133c1f3b3dfc0998d60a71c59c7f6c4ada5d84ec39934b2
sha512: dd046ced79a751e3dc7cfbab95b256c00d8e47a9640ab3d6b6a54bbaab3eabbd6caeda49093e24fe62170792c0c86ac0a3adb780fe9d8144f248542c1efac779
ssdeep: 3072:A3EvmtLeF3luhdrteg85y+5obzRzDqOGc8k:v3SrFt+KHqHc8
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T161F3065A77844B10CA9859B5C1F7993413F7A8D73AB3E3497E4892D60E023E8CD8A7CD
sha3_384: 4f8b5b5fbbd25b887a84be81e861a07705d03fcbb548339ac2bee27ad70979d7c91b6a00b99735c6acdd29f2da73cb09
ep_bytes: ff250020400000000000000000000000
timestamp: 2061-07-10 15:25:40

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: Auto Claimer For t2zb
FileVersion: 1.0.0.0
InternalName: Auto Claimer For t2zb.exe
LegalCopyright: Copyright © 2021
LegalTrademarks:
OriginalFilename: Auto Claimer For t2zb.exe
ProductName: Auto Claimer For t2zb
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.4254560878 also known as:

LionicTrojan.Win32.Lazy.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Lazy.38649
FireEyeGeneric.mg.c12b3358e74ef938
McAfeeArtemis!C12B3358E74E
CylanceUnsafe
SangforRiskware.Win32.Uwamson.A
Cybereasonmalicious.8e74ef
BitDefenderThetaGen:NN.ZemsilF.34182.jm0@aiXTXhd
CyrenW32/MSIL_Kryptik.FIG.gen!Eldorado
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R002H09LG21
BitDefenderGen:Variant.Lazy.38649
AvastWin32:TrojanX-gen [Trj]
EmsisoftGen:Variant.Lazy.38649 (B)
McAfee-GW-EditionArtemis!Trojan
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Lazy.38649
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C4636000
ALYacGen:Variant.Lazy.38649
MAXmalware (ai score=89)
MalwarebytesMalware.AI.4254560878
APEXMalicious
RisingTrojan.Generic/MSIL@AI.100 (RDM.MSIL:YgBk0j/5vXoqPceoHGILlQ)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetPossibleThreat
AVGWin32:TrojanX-gen [Trj]

How to remove Malware.AI.4254560878?

Malware.AI.4254560878 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment