Malware

Malware.AI.1497380673 removal guide

Malware Removal

The Malware.AI.1497380673 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1497380673 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Malware.AI.1497380673?


File Info:

crc32: F74135F1
md5: 5144acd56e3a0c798c3cd5cbe237dacc
name: 5144ACD56E3A0C798C3CD5CBE237DACC.mlw
sha1: 79e8c5101258d6949f5906716eecdab5246b7dcc
sha256: a60ae17256384b19f8df33385aea07757506a30576bac0c5b5beb8801eabc297
sha512: 65874be35ddcd8287215d23dd05a8f312d9ec5ef64696b7cea928d5ed83cb963450bcc75d32ca5f4cd104203a914b053d1a0c4145842a4feeead86e28efdae01
ssdeep: 24576:6oJBu2XV04jnHW8VwBYcOa3sM6zdYzLhQ0zJ68VQWWRWqMjFzLhQ0zJ68VQWWR/:Nu4jHmScOcsfWkq3jRkqa
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 1997-2020 Simon Tatham.
InternalName: PuTTY
FileVersion: Release 0.74 (with embedded help)
CompanyName: Simon Tatham
ProductName: PuTTY suite
ProductVersion: Release 0.74
FileDescription: SSH, Telnet and Rlogin client
OriginalFilename: PuTTY
Translation: 0x0809 0x04b0

Malware.AI.1497380673 also known as:

K7AntiVirusTrojan ( 00116c681 )
Elasticmalicious (high confidence)
DrWebTrojan.Swrort.10
CynetMalicious (score: 100)
ALYacWin32.Rozena.B
CylanceUnsafe
SangforVirus_Suspicious.Win32.Sality.ae
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Meterpreter.94d13d71
K7GWTrojan ( 00116c681 )
Cybereasonmalicious.56e3a0
CyrenW32/Rozena.D.gen!Eldorado
SymantecMeterpreter
ESET-NOD32a variant of Win32/Rozena.KC.gen
APEXMalicious
AvastWin32:Swrort-I [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderWin32.Rozena.B
NANO-AntivirusTrojan.Win32.Swrort.eratya
ViRobotWin32.Rozena.A
MicroWorld-eScanWin32.Rozena.B
Ad-AwareWin32.Rozena.B
SophosML/PE-A + Mal/Swrort-H
BitDefenderThetaAI:FileInfector.2395B8760E
McAfee-GW-EditionBehavesLike.Win32.Sality.tc
FireEyeGeneric.mg.5144acd56e3a0c79
EmsisoftWin32.Rozena.B (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Patched.Gen
MicrosoftTrojan:Win32/Meterpreter.gen!E
GridinsoftTrojan.Win32.Downloader.oa!s1
ArcabitWin32.Rozena.B
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataWin32.Trojan.PSE.16Y83VL
AhnLab-V3Trojan/Win32.RL_Generic.R358531
Acronissuspicious
McAfeeGenericRXAA-AA!5144ACD56E3A
MAXmalware (ai score=87)
VBA32BScope.Trojan.Downloader
MalwarebytesMalware.AI.1497380673
RisingHackTool.Swrort!1.6477 (CLOUD)
IkarusTrojan.Win64.Meterpreter
MaxSecureWin.MxResIcn.Heur.Gen
FortinetW32/Generic.AP.23ADC0!tr
AVGWin32:Swrort-I [Trj]
Paloaltogeneric.ml
Qihoo-360HEUR/QVM19.1.E90F.Malware.Gen

How to remove Malware.AI.1497380673?

Malware.AI.1497380673 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment