Malware

About “Malware.AI.4270116479” infection

Malware Removal

The Malware.AI.4270116479 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4270116479 virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • .NET file is packed/obfuscated with Confuser
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Malware.AI.4270116479?


File Info:

name: 8FA6AD35E4A0B1F976D0.mlw
path: /opt/CAPEv2/storage/binaries/dcdba128aed0055e7dd35d9f412d39d6ca1aba425160f0596be5bf20a139a1bc
crc32: 77F44D1F
md5: 8fa6ad35e4a0b1f976d054cd99e08e98
sha1: 6c524c66ce8d9f391bf6628b699a4d450197e560
sha256: dcdba128aed0055e7dd35d9f412d39d6ca1aba425160f0596be5bf20a139a1bc
sha512: b0d9e7929780517ae0eff9ce289b0c68a4b370d4036d150484c5df93d6f239452e08de42ea937678eb2141d9bd6ce029e04afee2dfcdb85eb37e108922b92565
ssdeep: 3072:/kzpl9Z/6hwVGuE897NNDn3a7UI4gIQHIIIIIIIIIIIIIIIIIIIIIIIIIIIIIII5:/kzpl9dpVGuEIDRm8fXXX3XXXXXXXq
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T12E34758DE6BEE18BC1AC927F3A39D7DD4CB12C032F69A71C2A40759A553B0DC26DB111
sha3_384: b212b11c66db7d741ea7c7c13639963592d6480d601f9e74391ab71793461c8c840ca75c82b63c421a94e9c4a1f00289
ep_bytes: ff250020400000000000000000000000
timestamp: 2093-01-24 03:56:30

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: irdk
FileVersion: 1.0.0.0
InternalName: Hulu Checker.exe
LegalCopyright: Copyright © 2020
LegalTrademarks:
OriginalFilename: Hulu Checker.exe
ProductName: irdk
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Malware.AI.4270116479 also known as:

LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.GenericKD.60001201
FireEyeGeneric.mg.8fa6ad35e4a0b1f9
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacTrojan.GenericKD.60001201
CylanceUnsafe
SangforTrojan.Win32.Wacatac.B
K7AntiVirusHacktool ( 0058d7051 )
AlibabaHackTool:MSIL/BruteForce.a5428da0
K7GWHacktool ( 0058d7051 )
Cybereasonmalicious.5e4a0b
CyrenW32/Trojan.YYYH-0928
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/HackTool.BruteForce.ALT
APEXMalicious
KasperskyHEUR:HackTool.MSIL.BruteForce.gen
BitDefenderTrojan.GenericKD.60001201
AvastWin32:Trojan-gen
TrendMicroTROJ_GEN.R053C0PLL21
McAfee-GW-EditionRDN/Generic PUP.z
EmsisoftTrojan.GenericKD.60001201 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
Antiy-AVLTrojan/Generic.ASMalwS.34F6434
MicrosoftProgram:Win32/Uwamson.A!ml
GDataTrojan.GenericKD.60001201
CynetMalicious (score: 100)
AhnLab-V3Malware/Gen.RL_Reputation.C4342599
McAfeeRDN/Generic PUP.z
MAXmalware (ai score=84)
MalwarebytesMalware.AI.4270116479
TrendMicro-HouseCallTROJ_GEN.R053C0PLL21
MaxSecureTrojan.Malware.300983.susgen
FortinetMalicious_Behavior.SB
BitDefenderThetaGen:NN.ZemsilF.34182.om0@a4UPuFk
AVGWin32:Trojan-gen

How to remove Malware.AI.4270116479?

Malware.AI.4270116479 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment