Malware

About “Malware.AI.4268958601” infection

Malware Removal

The Malware.AI.4268958601 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4268958601 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Uses Windows utilities to create a scheduled task
  • Deletes executed files from disk

How to determine Malware.AI.4268958601?


File Info:

name: 82FBF146F98F28A77D17.mlw
path: /opt/CAPEv2/storage/binaries/a1a6c4ce45be3c498f1ebcfe0f92df53ae28af1f45480ba2a30332c39eee745b
crc32: CD8510D3
md5: 82fbf146f98f28a77d170571b1cd4385
sha1: 04eafd14823759b4465ac2df24259ee3ca98b5c9
sha256: a1a6c4ce45be3c498f1ebcfe0f92df53ae28af1f45480ba2a30332c39eee745b
sha512: d7fda5409c3bdb3a68ca1362ecf0e3b3a28db332d831174ae4576184ee32d2792d5cfff3655ec10c241a9110db2a56f80e1598b624c6a430b6871d3710b62a92
ssdeep: 3072:V7DhdC6kzWypvaQ0FxyNTBfvSrjdhv29VsXMaZ:VBlkZvaF4NTBnOj3nMI
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1F5E49865A08B1FF1D3E6FE3A03E0E64AED2115FC83A7D482AF6C5815F67526221143E7
sha3_384: eb4cc55f5dbf8496261c68735e47cd80d6291ea3eb1e40118292d6ba2d9a583035d513582b3f69818502ed5a5db337da
ep_bytes: 68ac00000068000000006868804100e8
timestamp: 2019-07-30 08:52:45

Version Info:

FileVersion: 1.0.0.0
ProductVersion: 1.0.0.0
ProductName: ZOMBIE KING
OriginalFilename: ZOMBIE KING
InternalName: ZOMBIE KING
FileDescription: DDOS TOOL
Translation: 0x0000 0x04e4

Malware.AI.4268958601 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
SkyhighBehavesLike.Win32.RealProtect.jz
MalwarebytesMalware.AI.4268958601
SangforTrojan.Win32.Save.a
AlibabaTrojan:Win32/Generic.3c6fb9f1
Cybereasonmalicious.482375
BitDefenderThetaGen:NN.ZexaF.36792.Ru0@a0fzZso
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
APEXMalicious
AvastWin32:Malware-gen
TencentTrojan.Win32.Redcap.hg
FireEyeGeneric.mg.82fbf146f98f28a7
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
Antiy-AVLTrojan/Win32.PossibleThreat
AhnLab-V3Trojan/Win.Generic.C4596681
McAfeeArtemis!82FBF146F98F
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002V01JF23
RisingTrojan.Generic@AI.96 (RDML:h1jFH25u9tYSE6d7TfwG/g)
MaxSecureTrojan.Malware.216064600.susgen
FortinetW32/PossibleThreat
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Malware.AI.4268958601?

Malware.AI.4268958601 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment