Malware

Malware.AI.1115937277 information

Malware Removal

The Malware.AI.1115937277 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1115937277 virus can do?

  • Detected script timer window indicative of sleep style evasion
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • A scripting utility was executed
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Stores JavaScript or a script command in the registry, likely for persistence or configuration
  • Checks the CPU name from registry, possibly for anti-virtualization
  • Attempts to interact with an Alternate Data Stream (ADS)
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Malware.AI.1115937277?


File Info:

crc32: 42CE6205
md5: 94f49ce4de8cd098d054ef1a8c04f46e
name: 94F49CE4DE8CD098D054EF1A8C04F46E.mlw
sha1: 025aba2a26e007267cb493fa094bc755e53b8887
sha256: 2fe13d1e431e06ba1f3c14b5f54f485677dad218fdd261c9740f8cfacba63553
sha512: b7f549dca09ae7f0a93e121567de224f81e75935834b9673afd67c9d1a14addf991bb5aaf602f4cad181c967706dfb53e999bd0860e4280b079038c126d38d11
ssdeep: 1536:FxyuWrRLHSQrZpFI5yvvjliJ3j+jfKUqfmN7+oqxcUbXg7h/6sfzwN9NouuOH:FxyuMLHppLlihKzxqf94LK
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.1115937277 also known as:

K7AntiVirusRiskware ( 0040eff71 )
DrWebTrojan.DownLoader19.46453
CynetMalicious (score: 100)
ALYacWorm.Generic.904671
CylanceUnsafe
ZillyaDropper.Agent.Win32.232694
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaRansom:VBS/Blocker.3787052f
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.4de8cd
SymantecML.Attribute.HighConfidence
ESET-NOD32VBS/Agent.NJP
APEXMalicious
AvastVBS:Agent-BAQ [Trj]
ClamAVWin.Trojan.Generic-6584387-0
KasperskyTrojan-Ransom.Win32.Blocker.jwpi
BitDefenderWorm.Generic.904671
NANO-AntivirusTrojan.Win32.Jenxcus.ekqxvb
MicroWorld-eScanWorm.Generic.904671
TencentWin32.Trojan.Blocker.Hvsu
Ad-AwareWorm.Generic.904671
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34670.juW@aWMRndf
VIPRETrojan.Win32.Generic.pak!cobra
TrendMicroTROJ_OBFUSCATOR_FD042C98.UVPM
McAfee-GW-EditionBehavesLike.Win32.Trojan.cm
FireEyeGeneric.mg.94f49ce4de8cd098
EmsisoftWorm.Generic.904671 (B)
JiangminTrojanDropper.VBS.ep
MicrosoftWorm:VBS/Jenxcus
ArcabitWorm.Generic.DDCDDF
AegisLabTrojan.Win32.Blocker.j!c
ZoneAlarmTrojan-Ransom.Win32.Blocker.jwpi
GDataWorm.Generic.904671
AhnLab-V3Trojan/Win32.Obfuscator.R178171
Acronissuspicious
McAfeeArtemis!94F49CE4DE8C
MAXmalware (ai score=85)
VBA32TrojanDropper.VBS.Agent
MalwarebytesMalware.AI.1115937277
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_OBFUSCATOR_FD042C98.UVPM
RisingRansom.Blocker!8.12A (CLOUD)
YandexTrojan.GenAsa!oYNF4uyVRoo
IkarusTrojan-Downloader.VBS.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Blocker.JWPI!tr
AVGVBS:Agent-BAQ [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Blocker.HgIASOoA

How to remove Malware.AI.1115937277?

Malware.AI.1115937277 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment