Malware

Should I remove “Malware.AI.1981721706”?

Malware Removal

The Malware.AI.1981721706 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1981721706 virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Presents an Authenticode digital signature
  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • Exhibits possible ransomware file modification behavior
  • Collects information about installed applications
  • Creates a hidden or system file
  • Attempts to modify proxy settings
  • Attempts to create or modify system certificates
  • The sample wrote data to the system hosts file.
  • Uses suspicious command line tools or Windows utilities

How to determine Malware.AI.1981721706?


File Info:

crc32: 6CA3443E
md5: 44435f98c106aba4ccc2cae4622e5f5a
name: 44435F98C106ABA4CCC2CAE4622E5F5A.mlw
sha1: cabe39a86348f1d77ef08e5d9f115b6c5aa08ddc
sha256: dd4d74859f4a961c3e1238043bb84ef12c4a9a4f8055760696e49c666b6b01b8
sha512: 7add9a0570e1f70a266982c084120ab1b40953adc4914ab3cfbde8402cf6ec4bc7e6c4aadf0c6ae9366cbe3669f45fd5e00b39cdff4a77663aaacc5501bbe3b5
ssdeep: 3072:toKlbYV1tKkuSxaXdt+8ypQeSMytPTV/C57DCBOjV+ThbPxyDAg0Fubair6KIxy8:toKeHx4ypQz/W7DCV6DAOdYR4rm
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2017 Sirocco Team
FileVersion: 1.0.5.0
CompanyName: Sirocco Team
ProductName: Sirocco
ProductVersion: 1.0.5.0
FileDescription: Sirocco Private Installer 32-bit
OriginalFilename: Setup.exe
Translation: 0x0409 0x04b0

Malware.AI.1981721706 also known as:

BkavW32.AIDetectVM.malware2
MicroWorld-eScanGen:Variant.Mikey.70491
FireEyeGeneric.mg.44435f98c106aba4
McAfeeArtemis!44435F98C106
CylanceUnsafe
SangforMalware
K7AntiVirusAdware ( 005158051 )
K7GWAdware ( 005158051 )
Cybereasonmalicious.8c106a
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastFileRepMalware
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Mikey.70491
NANO-AntivirusTrojan.Win32.Upatre.esmaaq
Paloaltogeneric.ml
TencentMalware.Win32.Gencirc.10bb0b3f
Ad-AwareGen:Variant.Mikey.70491
SophosGeneric PUA MK (PUA)
ComodoApplicUnwnt@#24in8lksy0hyp
F-SecureHeuristic.HEUR/AGEN.1103408
DrWebTrojan.DownLoader25.28072
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.MaybeSpoofedCert.dh
EmsisoftGen:Variant.Mikey.70491 (B)
IkarusPUA.RunBooster
GDataGen:Variant.Mikey.70491
AviraHEUR/AGEN.1103408
ArcabitTrojan.Mikey.D1135B
AegisLabTrojan.Multi.Generic.4!c
ZoneAlarmUDS:DangerousObject.Multi.Generic
MicrosoftPUA:Win32/Bitrepeyp.C
AhnLab-V3Downloader/Win32.Upatre.C2115254
VBA32TrojanDownloader.Upatre
ALYacGen:Variant.Mikey.70491
MAXmalware (ai score=100)
MalwarebytesMalware.AI.1981721706
ESET-NOD32a variant of Win32/Adware.RunBooster.F
RisingDownloader.Upatre!8.B5 (TFE:5:JH1uW2qTkkC)
YandexTrojan.GenAsa!hjAFY15z1co
FortinetRiskware/RunBooster
WebrootW32.Adware.Gen
AVGFileRepMalware
PandaTrj/GdSda.A

How to remove Malware.AI.1981721706?

Malware.AI.1981721706 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment