Malware

Malware.AI.4259253229 removal tips

Malware Removal

The Malware.AI.4259253229 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4259253229 virus can do?

  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs

Related domains:

wpad.local-net

How to determine Malware.AI.4259253229?


File Info:

name: 3EF1C188DB6403BF7BC7.mlw
path: /opt/CAPEv2/storage/binaries/02f6f6feb38b365e4a1fbc5cef75d8dc3ab2f85b7200e34f46ac7e3e6cf4dabd
crc32: 18AA9441
md5: 3ef1c188db6403bf7bc735e0cf9d2172
sha1: cc3d6625f579482ce0ac93a279031d248a243ba3
sha256: 02f6f6feb38b365e4a1fbc5cef75d8dc3ab2f85b7200e34f46ac7e3e6cf4dabd
sha512: 20dee96e7b56fc0e503683a425905458793a07ac67c973cd95c06f3eb7dfd10497ab09f67ba10437870242b86e2cbf7411132c6d379d5fa668f488d6c3bf0cbf
ssdeep: 12288:Ph77E/8s/iQZZYnYgNhU1xWIMHUSqOPqx:J7I/t/XZdgg1SHUSqR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T155A4F1213AE5C5BAD2931530CFD86BF9B1F9D6580F2988A733C90F3D2D39546D236A18
sha3_384: 4ef92f1bef7b7387cf9001a1059b4307646d082715381d7e3d31d16c8dc6dc85cc3ff7987f549ac43e746973b354f343
ep_bytes: 558bec6aff68500e4200686cd0410064
timestamp: 2011-04-18 18:54:03

Version Info:

CompanyName: Igor Pavlov
FileDescription: 7z SFX
FileVersion: 9.22 beta
InternalName: 7z.sfx
LegalCopyright: Copyright (c) 1999-2011 Igor Pavlov
OriginalFilename: 7z.sfx.exe
ProductName: 7-Zip
ProductVersion: 9.22 beta
Translation: 0x0409 0x04b0

Malware.AI.4259253229 also known as:

LionicTrojan.Win32.Ulise.4!c
McAfeeArtemis!3EF1C188DB64
SangforTrojan.Win32.Sabsik.FL
BitDefenderGen:Variant.Ulise.274550
MicroWorld-eScanGen:Variant.Ulise.274550
AvastWin32:Malware-gen
SophosGeneric PUA FD (PUA)
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
FireEyeGen:Variant.Ulise.274550
EmsisoftGen:Variant.Ulise.274550 (B)
GDataGen:Variant.Ulise.274550
MAXmalware (ai score=88)
Antiy-AVLTrojan/Generic.ASMalwS.34D5016
GridinsoftRansom.Win32.Wacatac.sa
ArcabitTrojan.Ulise.D43076
MicrosoftProgram:Win32/Uwamson.A!ml
ALYacGen:Variant.Ulise.274550
MalwarebytesMalware.AI.4259253229
TrendMicro-HouseCallTROJ_GEN.R002H06KI21
eGambitUnsafe.AI_Score_93%
FortinetW32/PossibleThreat
AVGWin32:Malware-gen

How to remove Malware.AI.4259253229?

Malware.AI.4259253229 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment