Malware

Malware.AI.1394137844 information

Malware Removal

The Malware.AI.1394137844 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1394137844 virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Behavior consistent with a dropper attempting to download the next stage.
  • Anomalous binary characteristics

Related domains:

artistrun.top
focalscale.top

How to determine Malware.AI.1394137844?


File Info:

crc32: F0C2AC90
md5: 9976bea2f8c3dbbdcdcfda999c4285da
name: 9976BEA2F8C3DBBDCDCFDA999C4285DA.mlw
sha1: 0f988401980c174b0e298ca6aec81a7f3c5678db
sha256: dcdc2cfa06c753f165f53d941bb3ab3c3ed5d94c097145378c44536abfc0a43f
sha512: 7a0b6e6d59cad63a296db969c889eed022ad9c70b07e38ac0f921bcef0880d88b647fdc5b2b4f817628d99129d60a8a048b81528ed5f4d13694ff64413f001ff
ssdeep: 3072:AND7V2BCDm6LtzumpgWM9tegT/Xjass/v4UbeZy9DM6A4tceHA9PcOgxLlmAfSCJ:Ar2R6xtpM7egrjaDvkZ0Swc12xYAFkGF
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: iGrimm Stone Prod. All rights reserved.
InternalName: Grinn Installer
FileVersion: 112.84.2.9
CompanyName:
Comments: Install software
ProductName: NSIS installer
ProductVersion: 221.86.2.9
Translation: 0x0409 0x04b0

Malware.AI.1394137844 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Symmi.86460
FireEyeGeneric.mg.9976bea2f8c3dbbd
ALYacGen:Variant.Symmi.74534
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan-Downloader ( 005194e41 )
BitDefenderGen:Variant.Symmi.86460
K7GWTrojan-Downloader ( 005194e41 )
Cybereasonmalicious.2f8c3d
BitDefenderThetaGen:NN.ZexaF.34804.jmKfa8diCOgG
CyrenW32/Taterf.A!Generic
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.Tovkater.FF
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Malware.Tovkater-6956310-0
KasperskyTrojan-Downloader.Win32.Tovkater.bou
NANO-AntivirusTrojan.Win32.Tovkater.etqgco
AegisLabTrojan.Win32.Tovkater.4!c
Ad-AwareGen:Variant.Symmi.74534
SophosMal/Generic-S
ComodoTrojWare.Win32.TrojanDownloader.Tovkater.HV@7ete6c
F-SecureTrojan.TR/Crypt.XPACK.Gen7
DrWebTrojan.InstallMonster.2400
ZillyaTrojan.GenericKD.Win32.92611
TrendMicroTROJ_GEN.R002C0PLB20
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
EmsisoftGen:Variant.Symmi.86460 (B)
SentinelOneStatic AI – Malicious PE – Downloader
JiangminTrojanDownloader.Tovkater.ai
AviraHEUR/AGEN.1117983
MAXmalware (ai score=99)
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Symmi.D151BC
SUPERAntiSpywareTrojan.Agent/Gen-Downloader
AhnLab-V3Downloader/Win32.Tovkater.C2343674
ZoneAlarmHEUR:Trojan-Downloader.Win32.Tovkater.gen
GDataGen:Variant.Symmi.74534
CynetMalicious (score: 100)
Acronissuspicious
McAfeeArtemis!9976BEA2F8C3
VBA32TrojanDownloader.Tovkater
MalwarebytesMalware.AI.1394137844
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0PLB20
TencentWin32.Trojan-downloader.Tovkater.Hupi
YandexTrojan.DL.Tovkater!Lx9kN1SDwoQ
IkarusTrojan.Krypt
FortinetW32/Tovkater.FQ!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360HEUR/QVM20.1.6457.Malware.Gen

How to remove Malware.AI.1394137844?

Malware.AI.1394137844 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment