Malware

Malware.AI.4270866455 removal

Malware Removal

The Malware.AI.4270866455 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4270866455 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Spanish (Modern)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Malware.AI.4270866455?


File Info:

name: D61E219AA9DC77E2F925.mlw
path: /opt/CAPEv2/storage/binaries/e0cad64c0b6fd38f16b58390b82de424da5e80948aefdcf70be3646a61ab5a46
crc32: A62D40D6
md5: d61e219aa9dc77e2f925fdfa60fdc4b0
sha1: a311472fa134907b714c827b8531abe33a26a3ac
sha256: e0cad64c0b6fd38f16b58390b82de424da5e80948aefdcf70be3646a61ab5a46
sha512: 1ddc01fd75ffe3e7ccf6578c4d6d5ad2c37306a644a9640aeffe054c13a82b7fdba078a92734ac9935ad2b38884f5a3746052da2fc0915042b9d77bd1d7758f5
ssdeep: 98304:lVEtCg/7ytIxvKwGAjf4dwyxECUC6soeH+jng0Z2O8sL3:Lg/m21KwXWxcJs9eLPA9sD
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14D263302EAAB1C0DDC517EB34ED6D25DCF22D9E87B8A070360A5128F7B6F5D28E11D61
sha3_384: bf7f39cfb46a0d809fb023a4b60a9539643f725ca133f062923217527866e33c65cb1e7e186bd56f1d57ded1151c131f
ep_bytes: b814465e015064ff3500000000648925
timestamp: 2029-10-13 11:20:32

Version Info:

CompanyName: 郑州亚拓软件科技有限公司
FileDescription: 红管家送货单软件
FileVersion: 5.2.0.588
InternalName:
LegalCopyright: 郑州亚拓软件科技有限公司 版权所有
LegalTrademarks:
OriginalFilename:
ProductName: 红管家送货单软件
ProductVersion: 2015
Comments: 红管家送货单软件
Translation: 0x0804 0x03a8

Malware.AI.4270866455 also known as:

LionicTrojan.Win32.Agent.Y!c
MicroWorld-eScanTrojan.Generic.31751787
FireEyeTrojan.Generic.31751787
McAfeeArtemis!D61E219AA9DC
CylanceUnsafe
ZillyaTrojan.GenKryptik.Win32.156063
SangforDropper.Win32.Kryptik.Vsuk
K7AntiVirusTrojan ( 005641211 )
AlibabaTrojan:Win32/GenKryptik.9610bbcf
K7GWTrojan ( 005641211 )
CyrenW32/ABRisk.EBKT-2270
SymantecTrojan.Gen.MBT
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/GenKryptik.EHSZ
KasperskyUDS:Trojan-Dropper.Win32.Agent.gen
BitDefenderTrojan.Generic.31751787
TencentWin32.Trojan.Kryptik.Msmw
Ad-AwareTrojan.Generic.31751787
EmsisoftTrojan.Generic.31751787 (B)
VIPRETrojan.Generic.31751787
McAfee-GW-EditionBehavesLike.Win32.Dropper.rc
SophosMal/Generic-S
GDataTrojan.Generic.31751787
AviraTR/Kryptik.wsuqn
Antiy-AVLTrojan/Win32.FlyStudio.a
ArcabitTrojan.Generic.D1E47E6B
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
ALYacTrojan.Generic.31751787
MAXmalware (ai score=88)
MalwarebytesMalware.AI.4270866455
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R002H0CIJ22
RisingDropper.Agent!8.2F (CLOUD)
IkarusTrojan.Win32.Krypt
MaxSecureTrojan.Malware.12026031.susgen
FortinetW32/GenKryptik.EHSZ!tr
AVGFileRepMalware [Trj]
AvastFileRepMalware [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.4270866455?

Malware.AI.4270866455 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment