Malware

Malware.AI.4277496725 removal guide

Malware Removal

The Malware.AI.4277496725 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4277496725 virus can do?

  • Presents an Authenticode digital signature
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.AI.4277496725?


File Info:

name: 267BB0A24CD11929B53B.mlw
path: /opt/CAPEv2/storage/binaries/adde0ee17da5c450c46c7c0580fac80c3b11c86bcc24a9649db6eba1fc62f734
crc32: 2FFA7F2B
md5: 267bb0a24cd11929b53b203fc36eed3d
sha1: c692badb215b9eaff996276a56569c38b4e1cc9d
sha256: adde0ee17da5c450c46c7c0580fac80c3b11c86bcc24a9649db6eba1fc62f734
sha512: 0b39698762358e05ded6912d6e503e26ed491ac66a8fb45ee4c835a3691ea3b07a859a33dcab17a07beb45fc0dfb408d29edcb7498b2c116148f890a6b26ec4b
ssdeep: 24576:cuyepJbbOXaqSlNkln03c1Osd2hEEQVdEDvLJPjraFLR5ROwwC:QepZ6X6snh1Og0EXajrkp/
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T16445E10BF29404E9D47DCD34CE725221EE71F8CA1A34A59F17E492661F62BA05F3DB28
sha3_384: d313de1f80db5b467cdb5071f9522d86e7ebdb2352b6540ee39d5c01b156f79ddefbff408c9661cc85844c45e53db11b
ep_bytes: 2727909b989f379248fc98f89393929b
timestamp: 2021-02-15 04:59:54

Version Info:

CompanyName: Simon Tatham
ProductName: PuTTY suite
FileDescription: SSH, Telnet, Rlogin, and SUPDUP client
InternalName: PuTTY
OriginalFilename: PuTTY
FileVersion: Release 0.76 (with embedded help)
ProductVersion: Release 0.76
LegalCopyright: Copyright © 1997-2021 Simon Tatham.
Translation: 0x0809 0x04b0

Malware.AI.4277496725 also known as:

LionicTrojan.Win32.Swrort.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.47601468
FireEyeGeneric.mg.267bb0a24cd11929
McAfeeSwrort.d
CylanceUnsafe
K7AntiVirusRiskware ( 00584baa1 )
BitDefenderTrojan.GenericKD.47601468
K7GWRiskware ( 00584baa1 )
Cybereasonmalicious.b215b9
SymantecTrojan.Gen.MBT
ClamAVWin.Trojan.Swrort-5710536-0
KasperskyTrojan.Win32.Shelma.brwb
AlibabaTrojan:Win32/Shelma.86e84f03
RisingHackTool.Swrort!1.6477 (CLASSIC)
Ad-AwareTrojan.GenericKD.47601468
SophosMal/Generic-R
VIPRETrojan.Win32.Swrort.B (v)
TrendMicroTROJ_GEN.R002C0PL821
EmsisoftTrojan.GenericKD.47601468 (B)
AviraHEUR/AGEN.1125217
MAXmalware (ai score=80)
Antiy-AVLTrojan/Generic.ASMalwS.34EA176
KingsoftWin32.Troj.Shelma.br.(kcloud)
GridinsoftRansom.Win64.Wacatac.sa
MicrosoftTrojan:Win32/Woreflint.A!cl
GDataTrojan.GenericKD.47601468
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win.Generic.C4469852
ALYacTrojan.GenericKD.47601468
MalwarebytesMalware.AI.4277496725
TrendMicro-HouseCallTROJ_GEN.R002C0PL821
eGambitPE.Heur.InvalidSig
FortinetW32/Swrort.D!tr
AVGWin32:Meterpreter-C [Trj]
AvastWin32:Meterpreter-C [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.AI.4277496725?

Malware.AI.4277496725 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment