Malware

Malware.AI.4286205906 removal

Malware Removal

The Malware.AI.4286205906 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4286205906 virus can do?

  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.AI.4286205906?


File Info:

name: 973A2B3FCA8BB6D1C614.mlw
path: /opt/CAPEv2/storage/binaries/6a2c1c16473177b985f052e15344ec72a9cbbbcc4762436104a803ad124d224b
crc32: CEB7064B
md5: 973a2b3fca8bb6d1c614dc68f1b8f00f
sha1: 062a0c27aa43d8e823dd4cb3e1c8252961ae3592
sha256: 6a2c1c16473177b985f052e15344ec72a9cbbbcc4762436104a803ad124d224b
sha512: aaf93fbf350d69bef4bab3adbfd7293f44ec7a6ab3cc90c9f6383b85a0154f225a1c3e2f8bfbcdec86bfc91d30e5602a16f82576c74e935989659062cdb0ab03
ssdeep: 24576:mCtepIh6FEbRZhDgm3mb0B91f5JmjXugL9BN:3Cu6IwmU0B7BOD
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A5555C204E280BDEF4BA267601F9CF3186F44E716566E6966FFCA3C93355E407E1821B
sha3_384: 1f1a47b69772ef35de535b7af546693b313ef8440a02c47788bd45db8721feeb3013670b7fe2bf502b87ac45772b8d29
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-02-04 17:29:47

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName: PSM Payment Services Mexico SA de CV
FileDescription: ProsepagoNet
FileVersion: 4.0.0.9
InternalName: ProsepagoNet.exe
LegalCopyright: Copyright © 2020
LegalTrademarks: Prosepago Net
OriginalFilename: ProsepagoNet.exe
ProductName: ProsepagoNet
ProductVersion: 4.0.0.9
Assembly Version: 4.0.0.9

Malware.AI.4286205906 also known as:

BkavW32.Common.BDDD036D
LionicTrojan.Win32.AgentTesla.4!c
Cylanceunsafe
SangforTrojan.Win32.AgentTesla.V7f9
CrowdStrikewin/malicious_confidence_70% (W)
BitDefenderThetaGen:NN.ZemsilF.36608.un0@aqCiOej
VirITTrojan.Win32.MSIL_Heur.A
CynetMalicious (score: 100)
APEXMalicious
AvastWin32:Malware-gen
F-SecureHeuristic.HEUR/AGEN.1323727
TrendMicroTROJ_GEN.R002C0DKF23
VaristW32/MSIL_Kryptik.UZ.gen!Eldorado
AviraHEUR/AGEN.1323727
Antiy-AVLTrojan/MSIL.AgentTesla
MicrosoftTrojan:MSIL/AgentTesla!MTB
GoogleDetected
VBA32Malware-Cryptor.MSIL.AgentTesla.Heur
MalwarebytesMalware.AI.4286205906
TrendMicro-HouseCallTROJ_GEN.R002C0DKF23
RisingTrojan.AgentTesla!8.104D5 (CLOUD)
IkarusTrojan-Spy.AgentTesla
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Malware.AI.4286205906?

Malware.AI.4286205906 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment