Malware

Malware.AI.4254697908 malicious file

Malware Removal

The Malware.AI.4254697908 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4254697908 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Malware.AI.4254697908?


File Info:

name: 96EC7088896EF0E0B722.mlw
path: /opt/CAPEv2/storage/binaries/20a507a4f205e243467525c59f07d2e5122c4a92e95149a828abb81490e7950f
crc32: 6A37E232
md5: 96ec7088896ef0e0b722157cc9a9aa1d
sha1: 2fe8ca50f3d3fc33b62ad5f595dbf8b82fd9f20c
sha256: 20a507a4f205e243467525c59f07d2e5122c4a92e95149a828abb81490e7950f
sha512: 0b55f3bf85913445ce7a0828ad3b9a64fdccc284a4ab6d198c99ad1db06c3329c7cb0294e41cf23b9e69158cd5b6495a30e15fa0a562378479a2cd35b32d7da1
ssdeep: 1536:J2vI1y5uuao2Je8MmCvIS+T+ncWVcTkKE:02y5QXe8tCAS+T+n1Vc4h
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17143F157CB73DDAFCD3725780B83661BCB0DC8125B7C0B4AFA5019559F3A396492E828
sha3_384: d6fe26cdbf8d3cde63088e7085a4b0412ca1ed8599d22fa96f0a4c81150e78f1b28ce2d8490dfca6d9dadda3f6c5008d
ep_bytes: 60be00b089778dbe0060feff5783cdff
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Malware.AI.4254697908 also known as:

BkavW32.AIDetectMalware
AVGWin32:Downloader-AHH [Trj]
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Heur.GM.0540040802
SkyhighBehavesLike.Win32.Mydoom.qc
McAfeegeneric!bg.d
MalwarebytesMalware.AI.4254697908
VIPREGen:Trojan.Heur.GM.0540040802
SangforSuspicious.Win32.Save.a
AlibabaTrojan:Win32/BackdoorX.1fa948a2
Paloaltogeneric.ml
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.DNLEPH
CynetMalicious (score: 100)
APEXMalicious
AvastWin32:Downloader-AHH [Trj]
ClamAVWin.Trojan.Downloader-1566
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Trojan.Heur.GM.0540040802
NANO-AntivirusTrojan.Win32.CFI.wixaf
TencentMalware.Win32.Gencirc.140545b9
EmsisoftGen:Trojan.Heur.GM.0540040802 (B)
F-SecureTrojan.TR/ATRAPS.Gen
ZillyaTrojan.Kryptik.Win32.65569
TrendMicroTROJ_GEN.R002C0DAV24
FireEyeGeneric.mg.96ec7088896ef0e0
SophosMal/Generic-S
IkarusVirus.Win32.Downloader.AHH
JiangminTrojan/PSW.Almat.afy
VaristW32/Backdoor.OATJ-3741
AviraTR/ATRAPS.Gen
KingsoftWin32.Troj.Unknown.a
MicrosoftTrojan:Win32/Agent
XcitiumMalware@#2qciyjmo6b5rx
ArcabitTrojan.Heur.GM.D20305E62
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataGen:Trojan.Heur.GM.0540040802
GoogleDetected
ALYacGen:Trojan.Heur.GM.0540040802
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DAV24
RisingTrojan.Win32.Xema.var (CLASSIC)
YandexTrojan.GenAsa!ujN3zDsc1fI
MAXmalware (ai score=99)
MaxSecureTrojan.Malware.1728101.susgen
FortinetPossibleThreat
BitDefenderThetaAI:Packer.3690FF711D
DeepInstinctMALICIOUS
alibabacloudTrojan:Win/ATRAPS.Gen

How to remove Malware.AI.4254697908?

Malware.AI.4254697908 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment