Malware

About “Malware.AI.1131600736” infection

Malware Removal

The Malware.AI.1131600736 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1131600736 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Russian
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Malware.AI.1131600736?


File Info:

crc32: E864BC13
md5: 485a3887330fbfa36160f9e30130822d
name: 485A3887330FBFA36160F9E30130822D.mlw
sha1: 3427aab075eba3b740dcf4fb6639df7dbfe48a4f
sha256: b4f45986fbc9372df2d2a464c7cca4772d413478226d880b47a5272834e6111d
sha512: 5f5a6f46a6cc5ce0a84d33bc5a30ecf11ea7593acf4636bf88642602057fa175ab9dea5c4692d08f7a1e1d8af416d0f28414ee500d0d3675c9a7ef04fb2c4269
ssdeep: 49152:oAI+0zD/zDj88b88cvPvXDUzbvPj3//zfrb7XL/fPj3rrX3zbvwXnXjbGmmmmmmq:oAI+0zD/zDj88b88cvPvXDUzbvPj3//2
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: WinRAR
FileDescription: winrar-KEYGEN FFF 5.61.1 Installation
FileVersion: 5.61.1
Comments:
CompanyName: WinRAR
Translation: 0x0409 0x04e4

Malware.AI.1131600736 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0053c1091 )
LionicTrojan.MSIL.DOTHETUK.4!c
CynetMalicious (score: 99)
ALYacApplication.KeyGen.GO
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:MSIL/DOTHETUK.e039699f
K7GWTrojan ( 0053c1091 )
Cybereasonmalicious.7330fb
SymantecML.Attribute.HighConfidence
ESET-NOD32multiple detections
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Cerber-9111438-0
KasperskyTrojan.MSIL.DOTHETUK.uhr
BitDefenderGen:MSIL.Heur2.Lagos.2
MicroWorld-eScanGen:MSIL.Heur2.Lagos.2
TencentMsil.Trojan.Dothetuk.Pcsw
SophosMal/Generic-S
ComodoMalware@#jnikpawhyl2k
BitDefenderThetaGen:NN.ZemsilF.34790.hn0@aW3Do5o
McAfee-GW-EditionBehavesLike.Win32.PUP.th
FireEyeGeneric.mg.485a3887330fbfa3
EmsisoftGen:MSIL.Heur2.Lagos.2 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.MSIL.mhmd
AviraHEUR/AGEN.1122588
Antiy-AVLTrojan/Generic.ASMalwS.27F9375
MicrosoftHackTool:Win32/Keygen
GDataApplication.KeyGen.GO
McAfeeArtemis!485A3887330F
MAXmalware (ai score=99)
VBA32Backdoor.IRC.Bot
MalwarebytesMalware.AI.1131600736
PandaTrj/CI.A
IkarusTrojan.Win32.Meredrop
MaxSecureTrojan-Ransom.Win32.Crypmod.zfq
FortinetRiskware/KeyGen
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/HackTool.Keygen.HgIASRwA

How to remove Malware.AI.1131600736?

Malware.AI.1131600736 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment