Malware

Malware.AI.1371420957 removal

Malware Removal

The Malware.AI.1371420957 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1371420957 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

Related domains:

api.ip138.com

How to determine Malware.AI.1371420957?


File Info:

crc32: E7ACECCC
md5: 5fe109d6baf336b5341d37f93349deb6
name: 5FE109D6BAF336B5341D37F93349DEB6.mlw
sha1: c61f26341ada464a8141cccba23f0dfb47f7dacb
sha256: 2482d155d352e7af959ec5495b585637c177397ba1cc63288a71f1cb6663673c
sha512: 4dd9df14619de16f355626c685e402f9985804478808e230bb6b095d28e15015ca2e0bd70a1269d6f86760cde009b820f4db3270ed3f0f37e453c725ec0f1898
ssdeep: 24576:8ToKGe7tUq06R2zwMBo4roT5L6q1LhZve:8MheBU22zPBVE/1L
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.1371420957 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusAdware ( 0053e9eb1 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader27.6939
CynetMalicious (score: 100)
CAT-QuickHealPUA.Bundler.S3936668
ALYacGen:Variant.Application.Bundler.196
CylanceUnsafe
ZillyaTrojan.Generic.Win32.195099
SangforTrojan.Win32.Save.a
K7GWAdware ( 0053e9eb1 )
Cybereasonmalicious.6baf33
CyrenW32/S-82206cb5!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Softcnapp.AN potentially unwanted
AvastWin32:TrojanX-gen [Trj]
ClamAVWin.Malware.Softcnapp-6940714-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Application.Bundler.196
NANO-AntivirusTrojan.Win32.Softcnapp.firssa
MicroWorld-eScanGen:Variant.Application.Bundler.196
TencentMalware.Win32.Gencirc.10b0d195
Ad-AwareGen:Variant.Application.Bundler.196
SophosMal/Generic-S + Softcnapp (PUA)
ComodoApplication.Win32.AdWare.Softcnapp.C@7wfak4
BitDefenderThetaGen:NN.ZexaF.34266.2yW@aizwEWjj
TrendMicroTrojanSpy.Win32.TRICKBOT.SMC
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
FireEyeGeneric.mg.5fe109d6baf336b5
EmsisoftGen:Variant.Application.Bundler.196 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.cqjhm
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.287FF84
MicrosoftTrojan:Win32/Adload!rfn
GDataGen:Variant.Application.Bundler.196
AhnLab-V3PUP/Win32.Bundler.R238629
Acronissuspicious
McAfeeGenericRXGO-EO!5FE109D6BAF3
MAXmalware (ai score=100)
VBA32BScope.Trojan.Downloader
MalwarebytesMalware.AI.1371420957
PandaTrj/Genetic.gen
TrendMicro-HouseCallTrojanSpy.Win32.TRICKBOT.SMC
RisingTrojan.Generic@ML.100 (RDML:F25m4Ggzu8bHzyIEOaoGDQ)
YandexTrojan.GenAsa!T2hgklBBNow
IkarusTrojan.Win32.Krypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Symmi.CD14!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.1371420957?

Malware.AI.1371420957 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment