Malware

Malware.AI.1193970960 removal instruction

Malware Removal

The Malware.AI.1193970960 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1193970960 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.1193970960?


File Info:

crc32: 979B83C7
md5: 646ac2619b8db36d865182869553d548
name: 646AC2619B8DB36D865182869553D548.mlw
sha1: 3e2a39f86ebc4e72dde00b79d482f1471e1f0477
sha256: f1d00cc7a9bb17427356c0fcd40e98e1f6b6dc8fc29d10237b68c73eb73ceb30
sha512: c1b066a4c4b410b692a8073ac132ae406f6eeace09184a25bb48647fe72f351a6d083bc9c082dbfa60785e4deeb9fbc27a8eea2b5ec3516ffcf0dbc633ebfaa9
ssdeep: 768:j/ao7E/zVDJ55XcWbIOJkov6G92cL6ywKXo:dnEIp46w2d1
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.1193970960 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Ransom.85
FireEyeGeneric.mg.646ac2619b8db36d
ALYacGen:Variant.Ransom.85
MalwarebytesMalware.AI.1193970960
ZillyaTrojan.GenKryptik.Win32.3729
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00503be31 )
K7GWTrojan ( 00503be31 )
Cybereasonmalicious.19b8db
BitDefenderThetaGen:NN.ZexaF.34590.cq2@a0yWcovb
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Ransom.85
NANO-AntivirusTrojan.Win32.Androm.elkpil
Paloaltogeneric.ml
RisingMalware.Obscure/Heur!1.A89E (CLOUD)
Ad-AwareGen:Variant.Ransom.85
EmsisoftGen:Variant.Ransom.85 (B)
ComodoMalware@#1dummq0xcc9s9
F-SecureTrojan.TR/Crypt.XPACK.gepjf
DrWebTrojan.KillProc.50529
VIPRETrojan.Win32.Injector.cdgy (v)
McAfee-GW-EditionTrojan-FLTG!646AC2619B8D
SophosML/PE-A + Mal/Zbot-US
SentinelOneStatic AI – Suspicious PE
GDataGen:Variant.Ransom.85
JiangminTrojanSpy.MSIL.qlb
AviraTR/Crypt.XPACK.gepjf
MAXmalware (ai score=83)
Antiy-AVLTrojan/Win32.TSGeneric
KingsoftWin32.Troj.Generic_a.a.(kcloud)
ArcabitTrojan.Ransom.85
AegisLabTrojan.Win32.Generic.4!c
ZoneAlarmHEUR:Trojan.Win32.Generic
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Dynamer.R196674
McAfeeTrojan-FLTG!646AC2619B8D
VBA32BScope.Trojan.Ekstak
ESET-NOD32a variant of Win32/Injector.DPAB
TencentMalware.Win32.Gencirc.10bc20fa
YandexTrojan.GenAsa!kMnifSisjVc
IkarusTrojan.Win32.Krypt
FortinetW32/Generic.AC.3C636A!tr
AVGWin32:TrojanX-gen [Trj]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Malware.AI.1193970960?

Malware.AI.1193970960 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment