Malware

Malware.AI.4268919268 information

Malware Removal

The Malware.AI.4268919268 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4268919268 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.AI.4268919268?


File Info:

name: A7D4D5AD15B304917C9F.mlw
path: /opt/CAPEv2/storage/binaries/ea9e179fd0ae16d2105ac5c6f0125e0f3d99f35a966dc35c21863ab84cf91954
crc32: BC0548CE
md5: a7d4d5ad15b304917c9fea794aa93146
sha1: 2dee01373504f629ac5d59f5154b7ecc5e0b3366
sha256: ea9e179fd0ae16d2105ac5c6f0125e0f3d99f35a966dc35c21863ab84cf91954
sha512: 759f96d03a7bf8ae0db0346c4990f104ef653982a279177cbdd9f3b7c8fd701e398a8b5ea1b42b2b011206b7f45fa20bf52e1391683a318a6d4e357313ff6768
ssdeep: 12288:dChccc6vp+FqZOAhN67eAZTEFGnFYAcX+mbMoFGQ:MhccDxpMyApEFqy9X+sMoF9
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T179A4BF20A4D0DD0CC87DD77498BC26AA676FE9C5E2D9C32F97B8271839C5BC89719438
sha3_384: df300854fd0a4b46f7096e0033aaceb6c51ad88eafe7820132fdcde0240b3cf14b69ddaddad7e1e574fc3ad83a209bb3
ep_bytes: 5257518d1518000000648b3a03d201fa
timestamp: 2010-01-04 05:41:28

Version Info:

CompanyName: Rocksteady Studios Ltd
FileDescription: ShaderCompilerWorker Application
FileVersion: 1.0.0.0
InternalName: ShaderCompilerWorker
LegalCopyright: Copyright (C) 2010
OriginalFilename: UE3ShaderCompilerWorker.exe
ProductName: ShaderCompilerWorker Application
ProductVersion: 1.0.0.0
Translation: 0x0809 0x04b0

Malware.AI.4268919268 also known as:

BkavW32.Expiro2NHc.PE
MicroWorld-eScanWin32.Expiro.Gen.6
FireEyeGeneric.mg.a7d4d5ad15b30491
ALYacWin32.Expiro.Gen.6
CylanceUnsafe
VIPREWin32.Expiro.Gen.6
K7AntiVirusVirus ( 00580a951 )
BitDefenderWin32.Expiro.Gen.6
K7GWVirus ( 00580a951 )
Cybereasonmalicious.d15b30
BitDefenderThetaGen:NN.ZexaF.34646.Cq0@aO8@wDai
CyrenW32/Expiro.S.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Expiro.CP
APEXMalicious
KasperskyHEUR:Virus.Win32.Expiro.gen
NANO-AntivirusVirus.Win32.Gen.ccmw
CynetMalicious (score: 100)
Ad-AwareWin32.Expiro.Gen.6
EmsisoftWin32.Expiro.Gen.6 (B)
DrWebWin32.Expiro.152
TrendMicroVirus.Win32.EXPIRO.AD
McAfee-GW-EditionW32/Expiro.gen.rd
Trapminemalicious.high.ml.score
SophosML/PE-A + W32/Expiro-AV
IkarusVirus.Win32.Expiro
AviraW32/Infector.Gen8
MAXmalware (ai score=81)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataWin32.Expiro.Gen.6
GoogleDetected
AhnLab-V3Virus/Win.Expiro.X2115
McAfeeW32/Expiro.gen.rd
VBA32BScope.Trojan.Wacatac
MalwarebytesMalware.AI.4268919268
TrendMicro-HouseCallVirus.Win32.EXPIRO.AD
SentinelOneStatic AI – Suspicious PE
FortinetW32/Expiro.NDG!tr
AVGWin32:Xpirat-C [Inf]
AvastWin32:Xpirat-C [Inf]
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Malware.AI.4268919268?

Malware.AI.4268919268 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment