Malware

Malware.AI.2096161484 removal tips

Malware Removal

The Malware.AI.2096161484 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2096161484 virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • A process attempted to delay the analysis task.
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Queries information on disks, possibly for anti-virtualization
  • Attempts to modify proxy settings
  • Creates a slightly modified copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz
csdw.jia-si.cn
downdcdn.jia-si.cn
www.jia-si.cn

How to determine Malware.AI.2096161484?


File Info:

crc32: ABCAF743
md5: d90fc5187b75a4969c686bc861c41b87
name: D90FC5187B75A4969C686BC861C41B87.mlw
sha1: fbb3e9e9f798c5d70925ac623e96960b5ebf1d02
sha256: 1dc861db3a35cf0a1733735ec68f985b65c7d4e3d9d2bfd92308a393a430daf4
sha512: d6b94e5f13c88f0fce77c4099240683bd9f2bfd4b4386f65ff55b444976453ef9e8dc774248fdced7b7e003a5ef14b071810c39cdf2bac108ffc9c7a23dcb8f5
ssdeep: 49152:l6cjV6MJtlikfdKEpnVD+LIGptdBsSASe1lFar:4cxjJnVDCI
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.2096161484 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebAdware.Softcnapp.92
ClamAVWin.Malware.Softcnapp-6787524-0
CAT-QuickHealTrojan.Skeeyah.S3293683
ALYacGen:Variant.Strictor.257284
MalwarebytesMalware.AI.2096161484
ZillyaTrojan.Generic.Win32.1382432
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderGen:Variant.Strictor.257284
K7GWAdware ( 00535f0d1 )
Cybereasonmalicious.87b75a
CyrenW32/S-2a1c663c!Eldorado
SymantecPUA.Downloader
ESET-NOD32a variant of Win32/Softcnapp.BC potentially unwanted
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.Softcnapp.fhpkvh
MicroWorld-eScanGen:Variant.Strictor.257284
TencentTrojan.Win32.Generic.h
Ad-AwareGen:Variant.Strictor.257284
SophosSoftcnapp (PUA)
ComodoApplication.Win32.AdWare.Softcnapp.G@7x13gz
BitDefenderThetaGen:NN.ZexaF.34266.LAW@auil1Ujj
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Softcnapp.vh
FireEyeGeneric.mg.d90fc5187b75a496
EmsisoftGen:Variant.Strictor.257284 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.cnukg
AviraHEUR/AGEN.1142834
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.27991AF
GDataGen:Variant.Strictor.257284
AhnLab-V3PUP/Win32.Helper.R233980
Acronissuspicious
VBA32BScope.Adware.Puwaders
MAXmalware (ai score=85)
RisingAdware.Downloader!1.BBEC (CLASSIC)
YandexTrojan.GenAsa!3/dwzY3B0Ss
IkarusPUA.Softcnapp
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Generic.AJ!tr
PandaTrj/Genetic.gen

How to remove Malware.AI.2096161484?

Malware.AI.2096161484 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment