Malware

How to remove “Malware.AI.4287224395”?

Malware Removal

The Malware.AI.4287224395 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4287224395 virus can do?

  • At least one process apparently crashed during execution
  • Creates RWX memory
  • Loads a driver
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.4287224395?


File Info:

crc32: 4BA310E9
md5: b7c27bb039860ffca1735e246d16484a
name: B7C27BB039860FFCA1735E246D16484A.mlw
sha1: 14aaf1bb1da6bb713531852d864cfe753fa8208d
sha256: 1e375efc524e1166f4ae04c4b61aaa7eac2e31177bc74bdb6938553a9fc4943e
sha512: 58948acc1cffad626dcc8d79567e2f6fb18767c198071fc155a641717267db5e34da5896f64f378593b24260f9779330a2eb5ef1d3370f15192bcae8e4f9ce54
ssdeep: 24576:K1HQKFSQlWcP/iTyOYAXVrAcytp5fFbiXVMSdixPum:K1H9OE/3ODAnrf++mm
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.4287224395 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
DrWebWin32.HLLW.SpyBot.472
CynetMalicious (score: 100)
ALYacGen:Variant.Zusy.311369
CylanceUnsafe
ZillyaTrojan.GenericKD.Win32.39242
SangforTrojan.Win32.Generic.ky
AlibabaTrojan:Win32/Generic.9672cbdb
Cybereasonmalicious.039860
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/ScriptExpert.A potentially unsafe
APEXMalicious
AvastWin32:Malware-gen
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Zusy.311369
NANO-AntivirusTrojan.Win32.SpyBot.ezfnjh
MicroWorld-eScanGen:Variant.Zusy.311369
Ad-AwareGen:Variant.Zusy.311369
SophosGeneric ML PUA (PUA)
BitDefenderThetaGen:NN.ZelphiF.34266.pHX@a0ZJULbd
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Sural.th
FireEyeGeneric.mg.b7c27bb039860ffc
EmsisoftGen:Variant.Zusy.311369 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan/Vilsel.mpb
AviraHEUR/AGEN.1120779
Antiy-AVLTrojan/Generic.ASMalwS.18DA9DB
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Zusy.311369
McAfeeGenericRXAA-FA!B7C27BB03986
VBA32Trojan.Vilsel
MalwarebytesMalware.AI.4287224395
PandaTrj/Genetic.gen
YandexTrojan.Agent!QoqKRbgfxDI
IkarusTrojan-Downloader
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Malware.AI.4287224395?

Malware.AI.4287224395 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment