Malware

About “Malware.AI.1376328157” infection

Malware Removal

The Malware.AI.1376328157 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1376328157 virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Deletes its original binary from disk
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Collects information to fingerprint the system

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.1376328157?


File Info:

crc32: 09B3A527
md5: 9ddfdb304797ba5e1470f5d2711d2f23
name: 9DDFDB304797BA5E1470F5D2711D2F23.mlw
sha1: 99ebcade26c8f722dd6d38d75563ebece3fc389b
sha256: 0c4203a0f84b62d68a87d4ce9a2a05c65c56ed78e46dbebead2c7234f618da38
sha512: 2e6c0bf0dba1a503d0d173d42755e204234777a9a6eaedea716fdfc1a4ae613589d164618a5f51099c6337f334d8985f287be26fad2bd1fded1a4951da7927cd
ssdeep: 6144:sQbgPleIbfzwZvndpoQ/Xg1CIWNdEpe3rMT/U5A4fZHntQjtsCWALp/Kob:FgPlVbfi/oQ/Q1CApJ/h4tt0eCWAl/K
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Malware.AI.1376328157 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusSpyware ( 0053345d1 )
LionicTrojan.Win32.Blocker.j!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen8.20624
CynetMalicious (score: 100)
ALYacGeneric.Keylogger.2.63E13664
CylanceUnsafe
ZillyaTrojan.Agent.Win32.903978
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (D)
AlibabaRansom:Win32/Blocker.3d91381a
K7GWSpyware ( 0053345d1 )
Cybereasonmalicious.04797b
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Spy.Agent.PQM
APEXMalicious
AvastFileRepMalware
ClamAVWin.Malware.WebMonitorRAT-7663776-1
KasperskyTrojan-Ransom.Win32.Blocker.leib
BitDefenderGeneric.Keylogger.2.63E13664
NANO-AntivirusTrojan.Win32.Hijacker.femegb
MicroWorld-eScanGeneric.Keylogger.2.63E13664
TencentWin32.Trojan.Blocker.Hykd
Ad-AwareGeneric.Keylogger.2.63E13664
SophosMal/Generic-S
ComodoMalware@#dbobvd1xzyo5
BitDefenderThetaGen:NN.ZexaF.34142.vmGfauvB5rh
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.fc
FireEyeGeneric.mg.9ddfdb304797ba5e
EmsisoftGeneric.Keylogger.2.63E13664 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Blocker.ioz
AviraTR/Hijacker.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.26C3400
MicrosoftTrojan:Win32/Occamy.B
GDataGeneric.Keylogger.2.63E13664
AhnLab-V3Trojan/Win32.Agent.R238153
Acronissuspicious
McAfeeArtemis!9DDFDB304797
MAXmalware (ai score=100)
VBA32BScope.TrojanRansom.Blocker
MalwarebytesMalware.AI.1376328157
PandaTrj/Genetic.gen
RisingBackdoor.RevCode!1.B68F (CLASSIC)
IkarusTrojan-Spy.Agent
MaxSecureTrojan.Malware.115853835.susgen
FortinetW32/Generic.AC.4159be!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Malware.AI.1376328157?

Malware.AI.1376328157 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment