Malware

Malware.AI.1696468559 removal tips

Malware Removal

The Malware.AI.1696468559 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1696468559 virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Steals private information from local Internet browsers
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.1696468559?


File Info:

crc32: 12AB19F8
md5: fd636b608516243d7d7a7d8c6a7f56e7
name: FD636B608516243D7D7A7D8C6A7F56E7.mlw
sha1: 403a1aa16cbdabd2b032bc2164e5bd36fe899c28
sha256: f8e8615fa232c2a4eb974a0e254c6b7c1e644a0c3ec61e4d50a014f41301771e
sha512: 5a4416e8f793a6c79419f8add73b796bf48ae44ec4d68b72e0a8875b40d878dd4c375fd4356f542126c9d8bdbf366c35844bd04fb6b0cd26e473797969ef4ff6
ssdeep: 24576:dtb20pkaCqT5TBWgNQ7aB81A+vtnSuTzZmOTb4C6A:OVg5tQ7aB8G+PpmOTbX5
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

Malware.AI.1696468559 also known as:

BkavW32.AIDetectVM.malware1
DrWebTrojan.Inject2.9217
MicroWorld-eScanAIT:Trojan.GenericTKA.48
FireEyeAIT:Trojan.GenericTKA.48
CAT-QuickHealTrojanPWS.AutoIT.Dclog.S
McAfeeArtemis!FD636B608516
SangforMalware
CrowdStrikewin/malicious_confidence_90% (D)
BitDefenderAIT:Trojan.GenericTKA.48
K7GWUnwanted-Program ( 004d38111 )
K7AntiVirusUnwanted-Program ( 004d38111 )
BitDefenderThetaAI:Packer.6A29D41418
CyrenW32/AutoIt.QE.gen!Eldorado
SymantecTrojan.Gen
APEXMalicious
AvastScript:SNH-gen [Trj]
ClamAVWin.Trojan.Generictka-6957309-0
KasperskyHEUR:Trojan.Script.Generic
NANO-AntivirusTrojan.Win32.Ool.elsdvx
AegisLabTrojan.Script.Generic.4!c
TencentWin32.Trojan.Generic.Efkl
Ad-AwareAIT:Trojan.GenericTKA.48
EmsisoftAIT:Trojan.GenericTKA.48 (B)
F-SecureHeuristic.HEUR/AGEN.1100141
BaiduAutoIt.Trojan.Injector.d
McAfee-GW-EditionBehavesLike.Win32.TrojanAitInject.tc
SophosML/PE-A + Troj/Autoit-BSC
IkarusTrojan.Win32.Injector
AviraHEUR/AGEN.1100141
MAXmalware (ai score=88)
MicrosoftTrojan:Win32/Scrarev.C
ArcabitAIT:Trojan.GenericTKA.48
ZoneAlarmHEUR:Trojan.Script.Generic
GDataAIT:Trojan.GenericTKA.48 (2x)
CynetMalicious (score: 85)
AhnLab-V3Malware/Win32.Generic.C1803177
ALYacAIT:Trojan.GenericTKA.48
MalwarebytesMalware.AI.1696468559
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Injector.DMUI
RisingTrojan.Injector/Autoit!1.C5B5 (CLASSIC)
eGambitUnsafe.AI_Score_62%
FortinetW32/Autoit.BKC!tr
AVGScript:SNH-gen [Trj]
Cybereasonmalicious.085162
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Script.ed4

How to remove Malware.AI.1696468559?

Malware.AI.1696468559 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment