Malware

Malware.AI.176396860 removal instruction

Malware Removal

The Malware.AI.176396860 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.176396860 virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs
  • Creates a slightly modified copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.176396860?


File Info:

crc32: 309FFAC2
md5: d25a1060880a78b93376dc7af7d0cd78
name: D25A1060880A78B93376DC7AF7D0CD78.mlw
sha1: 2d8086efc9cde1b6fbdc680df1e01563ca3860a8
sha256: 679662be567815734de75b2bddc4448f03c0a201c708044b4a49b94b6e905604
sha512: 7e011fc0987f4ac0c0ef3b6d82f032e40964a2b2cd186f76a6eaead92caba2d69faa143ae4109623c769e92c28f9991d8a3fa86b7425c1f2bda78ea3364ee31f
ssdeep: 192:lHFwFITiXzJ5rn9uyhrdlKucmuGt03cZ/IO7dwmvyE:llwFITiXDZu+mmRtVZzimvb
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.176396860 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan-Downloader ( 0050fef41 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoad3.28507
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacTrojan.Ppatre.Gen.1
CylanceUnsafe
ZillyaDownloader.Small.Win32.76252
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan-Downloader ( 004eadfb1 )
Cybereasonmalicious.0880a7
BaiduWin32.Trojan-Downloader.Waski.k
CyrenW32/S-79ee1585!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.Small.PRL
APEXMalicious
AvastWin32:Downloader-WID [Trj]
ClamAVWin.Malware.Sdld-7131932-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Ppatre.Gen.1
NANO-AntivirusTrojan.Win32.DownLoad3.cjerhf
MicroWorld-eScanTrojan.Ppatre.Gen.1
TencentMalware.Win32.Gencirc.10b0cd7a
Ad-AwareTrojan.Ppatre.Gen.1
SophosML/PE-A + Troj/Upatre-XO
ComodoTrojWare.Win32.TrojanDownloader.Upatre.ACC@56yhj8
BitDefenderThetaGen:NN.ZexaE.34236.amY@aqldP@c
VIPRETrojan-Downloader.Win32.Upatre.a (v)
TrendMicroTROJ_DLOADER.SM3
McAfee-GW-EditionBehavesLike.Win32.Upatre.lz
FireEyeGeneric.mg.d25a1060880a78b9
EmsisoftTrojan.Ppatre.Gen.1 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.acusk
AviraTR/ATRAPS.Gen
eGambitUnsafe.AI_Score_95%
Antiy-AVLTrojan/Generic.ASMalwS.CA98B9
MicrosoftTrojan:Win32/Zbot.AO!MTB
ArcabitTrojan.Ppatre.Gen.1
SUPERAntiSpywareTrojan.Agent/Gen-Downloader
ZoneAlarmHEUR:Trojan-Downloader.Win32.Generic
GDataWin32.Trojan-Downloader.Upatre.BJ
AhnLab-V3Trojan/Win32.Zbot.R83549
Acronissuspicious
McAfeeUpatre-FAAI!D25A1060880A
MAXmalware (ai score=82)
VBA32Trojan.Download
MalwarebytesMalware.AI.176396860
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_DLOADER.SM3
RisingTrojan.Generic@ML.100 (RDML:R1sSX92IVf3lwksyobbw0w)
YandexTrojan.GenAsa!xjw/xZS1BKE
IkarusTrojan-Downloader.Win32.Upatre
MaxSecureTrojan.Upatre.Gen
FortinetW32/Tiny.NIV!tr
AVGWin32:Downloader-WID [Trj]

How to remove Malware.AI.176396860?

Malware.AI.176396860 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment