Malware

How to remove “Malware.AI.1739797124”?

Malware Removal

The Malware.AI.1739797124 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1739797124 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (3 unique times)
  • Creates RWX memory
  • Performs some HTTP requests
  • Uses Windows utilities for basic functionality
  • Creates a hidden or system file
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
java.com
www.bing.com

How to determine Malware.AI.1739797124?


File Info:

crc32: 035FB6C5
md5: 21bbb1625ea28415e3370304c8d02f20
name: 21BBB1625EA28415E3370304C8D02F20.mlw
sha1: 0602488f6144d1443b63136c5a1531731da91daa
sha256: 767a951ea1f41e10287199d95ffed5a84a94e1d33d82d519c91db89d37941f42
sha512: 6b9acc5401a3b87f24c514c1076d9f3ea81125befead1d6835f4e555bbf5eb7d5de1e916ac609eb7bbe5f4cefbf0f85939981b55b272017d0f2a42c05360efbe
ssdeep: 98304:KxWaFF9TNXabYp8d5b9/hqjybCweYp/3K:0BTNKQ8b9YubpRpvK
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Malware.AI.1739797124 also known as:

LionicTrojan.Win32.Blocker.trNU
ALYacJava.Trojan.GenericGB.28429
SangforTrojan.Win32.Wacatac.B
AlibabaTrojanPSW:Win32/Disco.d72d2fb9
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyTrojan-PSW.Win32.Disco.bay
BitDefenderJava.Trojan.GenericGB.28429
SophosMal/Generic-S
F-SecureTrojan.TR/Redcap.mbaew
TrendMicroTROJ_GEN.R002C0PHB21
McAfee-GW-EditionBehavesLike.Win32.Downloader.wc
FireEyeJava.Trojan.GenericGB.28429
EmsisoftJava.Trojan.GenericGB.28429 (B)
AviraTR/Redcap.mbaew
MicrosoftRansom:Win32/Blocker
ArcabitJava.Trojan.GenericGB.D6F0D
ZoneAlarmTrojan-PSW.Win32.Disco.bay
GDataJava.Trojan.GenericGB.28429
AhnLab-V3Malware/Win.Generic.R430883
McAfeeArtemis!21BBB1625EA2
MAXmalware (ai score=85)
MalwarebytesMalware.AI.1739797124
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0PHB21
IkarusTrojan.Java.Crypt
FortinetJava/GenericGB.2B37!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Malware.AI.1739797124?

Malware.AI.1739797124 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment