Malware

Should I remove “Malware.AI.4269630989”?

Malware Removal

The Malware.AI.4269630989 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4269630989 virus can do?

  • Dynamic (imported) function loading detected
  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Executable file is packed/obfuscated with Y0da
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.4269630989?


File Info:

name: AFB9C0E33D581A3D4167.mlw
path: /opt/CAPEv2/storage/binaries/0a4510b93d27d764419eb1b72ee3dac5a5c73c1e3004aecf2cf6af0f0d8cb16c
crc32: 186A13D6
md5: afb9c0e33d581a3d41673043250c67f3
sha1: 756414ce7560acb283153a637b8b1e0061268e75
sha256: 0a4510b93d27d764419eb1b72ee3dac5a5c73c1e3004aecf2cf6af0f0d8cb16c
sha512: f27e7bfde6ff0f353c6649474d073941d7760901a9d276bc80bcbeb41f21b662b5c631258f6a5e719620f1d4aaa8a6ebe658a66332f864ebb92eba5069bcef5b
ssdeep: 6144:jyAEtFUeWevoXXRZBAN0UbTEpFqcwM34HmQALUjItbZua:+xXUeWZn/BovKqcwgOwP
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F57402237A805AC4D1358831E58F6E891773BD2A89B2166F74C4B7BF0CFB160EB16B51
sha3_384: 6f6a7b64be719e9da6b7df431ecb8fd80cb906ee45516cfe80bb925b8056a2fd62f2840e23cd92fd827af4e16417c64a
ep_bytes: 60680f1800906840404848eb01ebeb0a
timestamp: 1992-06-19 22:22:17

Version Info:

CompanyName: RaZe Software
FileDescription:
FileVersion: 1.3.0.0
InternalName:
LegalCopyright: RaZe Software
LegalTrademarks:
OriginalFilename: cc2bank.exe
ProductName: CC2Bank
ProductVersion: 1.3.0.0
Comments: icq: 9788337
Translation: 0x0809 0x04e4

Malware.AI.4269630989 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
FireEyeGeneric.mg.afb9c0e33d581a3d
McAfeeW32/Fujacks.v.gen
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Sabsik.FL
K7GWTrojan ( 7000000f1 )
K7AntiVirusTrojan ( 7000000f1 )
CyrenW32/Fujack.A!Generic
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R002C0PAV22
NANO-AntivirusTrojan.Win32.Delf.fovxbg
SophosMal/Generic-S
BaiduWin32.Virus.Fujack.a
TrendMicroTROJ_GEN.R002C0PAV22
McAfee-GW-EditionBehavesLike.Win32.Dropper.fc
IkarusTrojan-Spy.Win32.Banker.NG
GDataWin32.Trojan.Agent.RY4D42
JiangminWorm/Viking.Tail
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
MalwarebytesMalware.AI.4269630989
APEXMalicious
RisingMalware.Heuristic!ET#85% (RDMK:cmRtazp6ZkCGhjxH3+8egIibaVxf)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Fujacks.V
Cybereasonmalicious.e7560a
PandaW32/Knase.C

How to remove Malware.AI.4269630989?

Malware.AI.4269630989 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment