Malware

What is “Malware.AI.4293915722”?

Malware Removal

The Malware.AI.4293915722 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4293915722 virus can do?

  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Malware.AI.4293915722?


File Info:

name: C7257E3017BD2C20FD5B.mlw
path: /opt/CAPEv2/storage/binaries/a9088bb87d5d6094317202bc10c65226e031564be0e2c8f267b5516422c8c449
crc32: 3E5A7BD0
md5: c7257e3017bd2c20fd5b14190174e7f5
sha1: 449b9ae93daaa12d89439f4382b884a860fe2945
sha256: a9088bb87d5d6094317202bc10c65226e031564be0e2c8f267b5516422c8c449
sha512: d30dc6b1cf1ca18187cf8c9f2768ad84a52426cadc25ecdd8438d0321331536336fc22539136ec492eda0bb24d076b2f483eea00ad5dc6fd32f93f47e753d0be
ssdeep: 49152:oFs8LeubXfnsan2aF/2u2HfKOaGzlH/SXoirWaBR8GBCAzTRXOgIK2RhoEScEFVb:Un7nN2UsHRaGZQ5U0hxIzRyESc8JZ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15ED5FFC6DB40BE91D73FC33B70242B4186889AF9EC91CA1BD7E96A50B591342424DDEF
sha3_384: ce1b0f5bcbc7b3aa3ae475c41c152179ad1a6a38948dd52b5a06c0f2763cdc17479e0f652b2a2e9b94891109f398798d
ep_bytes: 81ecd40200005356576a205f33db6801
timestamp: 2019-12-16 00:50:53

Version Info:

Comments: Powered by HeiFei YunBiao XinXi KeJi YouXian GongSi
CompanyName: HeiFei YunBiao XinXi KeJi YouXian GongSi
FileDescription: 打印机大师
FileVersion: 1.0.0.15913
InternalName: 打印机大师
LegalCopyright: Copyright (C) 2020 HeiFei YunBiao XinXi KeJi YouXian GongSi. All rights reserved.
ProductName: 打印机大师
ProductVersion: 1.0.0.15913
Translation: 0x0804 0x04b0

Malware.AI.4293915722 also known as:

CynetMalicious (score: 100)
FireEyeTrojan.Generic.31333304
CAT-QuickHealPUA.IgenericRI.S25216056
McAfeeArtemis!C7257E3017BD
CylanceUnsafe
SangforTrojan.Win32.GenericKD.47406442
CrowdStrikewin/malicious_confidence_90% (D)
K7GWTrojan ( 0056e5201 )
K7AntiVirusTrojan ( 0056e5201 )
CyrenW64/Trojan.LARF-4959
ESET-NOD32multiple detections
AvastWin32:DangerousSig [Trj]
Kasperskynot-a-virus:HEUR:AdWare.Win32.Burden.gen
BitDefenderTrojan.Generic.31333304
MicroWorld-eScanTrojan.Generic.31333304
RisingAdware.Agent!1.CB5B (CLASSIC:bWQ1OkwMCqoj4qadb29ynm6vhFI)
Ad-AwareTrojan.Generic.31333304
EmsisoftTrojan.Generic.31333304 (B)
ZillyaTrojan.Inject.Win32.316629
TrendMicroTROJ_GEN.R066C0PL621
GDataTrojan.Generic.31333304
AviraADWARE/AdAnti.thkia
ArcabitTrojan.Generic.D1DE1BB8
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
AhnLab-V3Trojan/Win.DangerousSig.R459763
ALYacTrojan.Generic.31333304
MAXmalware (ai score=87)
VBA32Adware.Convagent
MalwarebytesMalware.AI.4293915722
TencentWin32.Adware.Burden.Swuf
FortinetRiskware/AdAnti
AVGWin32:DangerousSig [Trj]
PandaTrj/CI.A

How to remove Malware.AI.4293915722?

Malware.AI.4293915722 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment