Malware

Malware.AI.4261924011 information

Malware Removal

The Malware.AI.4261924011 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4261924011 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • .NET file is packed/obfuscated with Confuser
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.AI.4261924011?


File Info:

name: 31610AB97E2FD3BE4320.mlw
path: /opt/CAPEv2/storage/binaries/f63e22c1f299576e425c6df874187439d34fb2992e1322cef5e5eee756433dbd
crc32: 1882682F
md5: 31610ab97e2fd3be4320a015a830de6d
sha1: 1ed7e622f9e903267ccc379fe90dfad57babc32e
sha256: f63e22c1f299576e425c6df874187439d34fb2992e1322cef5e5eee756433dbd
sha512: f4841a17ea6476a2dbf75d35a965a6c8496d47ec6e952048bbcb9bccec8cacceb6689623b85c739c4b96636ca0d611ff35e2d319719829eb57f1954af81d9990
ssdeep: 6144:n1n3OU+0uHhOXn/JsuDb2iMrsApLrHoyFvuVD9g2PYTLSoIQ8D:13OUn2heRbqiM5NoYuVD9g2QT1IQ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BE5423305BC9F097D7B4053E92329E47468CDA99AED3E7DB2715D2118F72BA80428F27
sha3_384: 1df3079324b9ad11689442a1b92e87e9a17a3683748fa234d9790c9ebf54774abce123f4065d94810c58ff0842aed6ae
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-01-15 10:03:29

Version Info:

Translation: 0x0000 0x04b0
Comments: Little patch.
CompanyName: TEAM LAXiTY 2022
FileDescription: Patch
FileVersion: 1.0.0.0
InternalName: patch.exe
LegalCopyright: Bauer Lindemann 2022
LegalTrademarks:
OriginalFilename: patch.exe
ProductName: patch01
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.4261924011 also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacGen:Variant.MSILPerseus.188497
CylanceUnsafe
SangforSuspicious.Win32.Save.a
BitDefenderGen:Variant.MSILPerseus.188497
CrowdStrikewin/malicious_confidence_70% (D)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/HackTool.Patcher.B potentially unsafe
APEXMalicious
KasperskyHEUR:Trojan.Win32.Generic
MicroWorld-eScanGen:Variant.MSILPerseus.188497
RisingMalware.Obfus/MSIL@AI.100 (RDM.MSIL:4QcrWZsm1tmP0d1692/1qw)
EmsisoftGen:Variant.MSILPerseus.188497 (B)
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
FireEyeGeneric.mg.31610ab97e2fd3be
SophosKeygen (PUA)
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=89)
MicrosoftBackdoor:Win32/Bladabindi!ml
GDataGen:Variant.MSILPerseus.188497
AhnLab-V3Malware/Win.Generic.C4528972
McAfeeArtemis!31610AB97E2F
MalwarebytesMalware.AI.4261924011
TrendMicro-HouseCallTROJ_GEN.R06CH07AV22
IkarusPUA.MSIL.Confuser
eGambitUnsafe.AI_Score_99%
BitDefenderThetaGen:NN.ZemsilF.34182.sm0@aGq49gb
Cybereasonmalicious.97e2fd
MaxSecureTrojan.Malware.300983.susgen

How to remove Malware.AI.4261924011?

Malware.AI.4261924011 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment