Malware

Malware.AI.1425601894 removal

Malware Removal

The Malware.AI.1425601894 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1425601894 virus can do?

  • Executable code extraction
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

Related domains:

justifica.db.7172228.hostedresource.com

How to determine Malware.AI.1425601894?


File Info:

crc32: 8CBFD9DB
md5: b6cf8891fd34143534b570d2f33c508b
name: B6CF8891FD34143534B570D2F33C508B.mlw
sha1: 7245cbfff48b19fdca84742819216ddc966e7ae0
sha256: 9b78268ace70df8d8c3390fc8d4309b4e92c89ab9ae098b1ca4e69c092966cfa
sha512: 15e4cb904f4b99d15d6cdadab7340f0a43de6c0a946f29545ca91d199e4cc19c13f7630e62f1354b9e7dc425162d21ce3c5f7a7815c85b688eb7cf550b09cf44
ssdeep: 384:TMghNTT6pxs4piIq95dyhIvd35wG/W79zUVXJ+CFN81oCNi/FlGV52n/A2LK:x3yUlPLuJUXJ+C0FN/SAS
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: Copyright(C) 2003-2011 All Rights Reserved.
InternalName: big6
FileVersion: 1.00
CompanyName: www.BitComet.com
ProductName: BitComet
ProductVersion: 1.00
FileDescription: BitComet - a BitTorrent Client
OriginalFilename: big6.exe

Malware.AI.1425601894 also known as:

MicroWorld-eScanGen:Variant.Graftor.44885
FireEyeGeneric.mg.b6cf8891fd341435
McAfeeArtemis!B6CF8891FD34
CylanceUnsafe
VIPRETrojan.Win32.Generic.pak!cobra
AegisLabTrojan.Win32.VBKrypt.4!c
SangforBackdoor.Win32.Hostposer.A
BitDefenderGen:Variant.Graftor.44885
Cybereasonmalicious.1fd341
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastFileRepMalware
ClamAVWin.Packed.Hostposer-7599254-0
KasperskyTrojan.Win32.VBKrypt.pnil
AlibabaBackdoor:Win32/VBKrypt.3f209315
NANO-AntivirusTrojan.Win32.VBKrypt.cxylra
TencentWin32.Trojan.Vbkrypt.Phgp
Ad-AwareGen:Variant.Graftor.44885
EmsisoftGen:Variant.Graftor.44885 (B)
ComodoMalware@#4wta5st5j48f
F-SecureTrojan.TR/Dropper.Gen
ZillyaTrojan.VBKrypt.Win32.207759
TrendMicroTROJ_GEN.R002C0DLL20
McAfee-GW-EditionBehavesLike.Win32.Trojan.mc
SophosMal/Generic-S
IkarusBackdoor.Win32.Hostposer
AviraTR/Dropper.Gen
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftBackdoor:Win32/Hostposer.A
GridinsoftTrojan.Win32.Downloader.oa
ArcabitTrojan.Graftor.DAF55
ZoneAlarmTrojan.Win32.VBKrypt.pnil
GDataGen:Variant.Graftor.44885
CynetMalicious (score: 85)
ALYacGen:Variant.Graftor.44885
MAXmalware (ai score=81)
VBA32TScope.Trojan.VB
MalwarebytesMalware.AI.1425601894
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/TrojanDownloader.VB.POZ
TrendMicro-HouseCallTROJ_GEN.R002C0DLL20
RisingBackdoor.Hostposer!8.CC9 (CLOUD)
YandexTrojan.DL.VB!bus5zBOKAi8
SentinelOneStatic AI – Suspicious PE – Worm
FortinetW32/TrojanDownloader.VB.POZ
WebrootW32.Malware.Gen
AVGFileRepMalware
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Worm.VBKrypt.HwsBIfIA

How to remove Malware.AI.1425601894?

Malware.AI.1425601894 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment