Malware

Malware.AI.4279835202 malicious file

Malware Removal

The Malware.AI.4279835202 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4279835202 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.4279835202?


File Info:

crc32: 0F31A37A
md5: cab2f1a06e09344f5dc87954971e8aea
name: CAB2F1A06E09344F5DC87954971E8AEA.mlw
sha1: b083da3fc3d63560d1ce9d768337c42164cb54f6
sha256: 8d0169512ad4e28f251cf54d6e7cdbe2ad1480b1e8259a425ca8af1644583675
sha512: 3dc02f3752c94f1edd1b01d2ca99fa0f419f236def0e41637019fb8a4d193868fe0cfd5f0c869408fa55d0a0dd6db19dccb293606baf4dfe77a077be299f8425
ssdeep: 49152:d/CAhX6TChCT4qD83VGRVuSrs5xw8vxI5lR:bh6de3VGRESrs5x1
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2018
Assembly Version: 1.0.0.0
InternalName: CryptBot.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: CryptBot
ProductVersion: 1.0.0.0
FileDescription: CryptBot
OriginalFilename: CryptBot.exe

Malware.AI.4279835202 also known as:

K7AntiVirusTrojan ( 0052d0951 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader7.47122
CynetMalicious (score: 100)
ALYacGen:Variant.Ser.Johnnie.1910
CylanceUnsafe
ZillyaBackdoor.Generic.Win32.30252
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaBackdoor:Win32/Generic.a4cb2e5e
K7GWTrojan ( 0052d0951 )
Cybereasonmalicious.06e093
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.ICQHBV
APEXMalicious
AvastWin32:Malware-gen
KasperskyBackdoor.Win32.Shiz.krlt
BitDefenderGen:Variant.Ser.Johnnie.1910
NANO-AntivirusTrojan.Win32.Shiz.ezbxcq
MicroWorld-eScanGen:Variant.Ser.Johnnie.1910
TencentWin32.Trojan.Inject.Auto
Ad-AwareGen:Variant.Ser.Johnnie.1910
SophosMal/Generic-S
ComodoMalware@#w33s9cg3c055
BitDefenderThetaGen:NN.ZemsilF.34266.Tr0@aiSt3Hp
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0GJ121
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.cab2f1a06e09344f
EmsisoftGen:Variant.Ser.Johnnie.1910 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.MSIL.tzuiq
Antiy-AVLTrojan/Generic.ASMalwS.250C071
MicrosoftBackdoor:Win32/Bladabindi!ml
GDataGen:Variant.Ser.Johnnie.1910
McAfeeArtemis!CAB2F1A06E09
MAXmalware (ai score=95)
VBA32Backdoor.Shiz
MalwarebytesMalware.AI.4279835202
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0GJ121
IkarusTrojan.SuspectCRC
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.8AEA!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Malware.AI.4279835202?

Malware.AI.4279835202 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment