Malware

Should I remove “Malware.AI.4257922059”?

Malware Removal

The Malware.AI.4257922059 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4257922059 virus can do?

  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.4257922059?


File Info:

name: 6A242429747ABAE74550.mlw
path: /opt/CAPEv2/storage/binaries/caa5fbc2cc94dfbe0347be72e9676a12ab93f5a1788cd7124860b897714d6211
crc32: 5F8FDF95
md5: 6a242429747abae74550038591878525
sha1: adc5f1753bd52b988402d596f43616a74466e025
sha256: caa5fbc2cc94dfbe0347be72e9676a12ab93f5a1788cd7124860b897714d6211
sha512: 06cc75452ac94e473e3173365fe3e012f110a0fe49dd5fff310d194e78b36ef331111cb0c3bfb8cb9ab33f1d241626e71b6e7322d684aecd06bd89db43408353
ssdeep: 6144:S5VP9Ge3+hoAvdeJBbLncZHmenmqL9gkJq5KAxfguMmE3H1kXR:S5393whFOBbAhnXlCPz7B
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T193740161BBDA41F2C9D3327048153BA6A5BBF3390F1855C76790060B6E366D29F3E2C6
sha3_384: f4962ad745615ba36bd0a5c3de7291d044db50bf241996b667a30e8e3d6c1600ea83cc0e502253c22bae6b0df516ef9a
ep_bytes: 558bec6aff6880fa410068f0c4410064
timestamp: 2016-04-02 22:14:34

Version Info:

CompanyName: mephistooo2 - TNCTR.com
FileDescription: $OEM$ Sanal KMS Sunucu v5
FileVersion: 5.0.0.0
InternalName: $OEM$.exe
LegalCopyright: mephistooo2 - TNCTR.com
OriginalFilename: $OEM$.exe
ProductName: Sanal KMS Sunucu v5
ProductVersion: 5.0.0.0
Translation: 0x0409 0x04b0

Malware.AI.4257922059 also known as:

LionicRiskware.Win32.Generic.1!c
FireEyeGeneric.mg.6a242429747abae7
CAT-QuickHealTrojan.Bluteal
McAfeeArtemis!6A242429747A
MalwarebytesMalware.AI.4257922059
VIPRETrojan.Win32.Generic!BT
K7AntiVirusUnwanted-Program ( 0056d7e41 )
K7GWUnwanted-Program ( 0056d7e41 )
BitDefenderThetaGen:NN.ZexaE.34182.lu0@amxKechi
CyrenW64/Trojan.SIAN-6321
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/HackKMS.BP potentially unsafe
TrendMicro-HouseCallTROJ_GEN.R002H06L820
Paloaltogeneric.ml
ClamAVWin.Malware.Drivepack-9884589-1
BitDefenderApplication.Hacktool.KMSActivator.GG
MicroWorld-eScanApplication.Hacktool.KMSActivator.GG
AvastWin32:Malware-gen
EmsisoftApplication.Hacktool.KMSActivator.GG (B)
ComodoApplicUnwnt@#23k3j09aard9b
TrendMicroTROJ_GEN.R002C0DJN21
SophosGeneric PUA KN (PUA)
JiangminTrojan/CoinMiner.ab.a
WebrootW32.Adware.Gen
Antiy-AVLGrayWare/Win32.Presenoker
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftHackTool:Win32/AutoKMS
GDataApplication.Hacktool.KMSActivator.FQ
AhnLab-V3Malware/Win32.Generic.C2503327
VBA32BScope.TrojanDownloader.Banload
ALYacApplication.Hacktool.KMSActivator.FQ
MAXmalware (ai score=100)
APEXMalicious
RisingTrojan.Generic@AI.81 (RDMK:/xNjUwG+E35w1ld8fhZfEw)
SentinelOneStatic AI – Suspicious SFX
FortinetW32/PossibleThreat
AVGWin32:Malware-gen
Cybereasonmalicious.9747ab
PandaTrj/CI.A

How to remove Malware.AI.4257922059?

Malware.AI.4257922059 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment