Malware

How to remove “Malware.AI.216586621”?

Malware Removal

The Malware.AI.216586621 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.216586621 virus can do?

  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Stores JavaScript or a script command in the registry, likely for persistence or configuration
  • Anomalous binary characteristics

Related domains:

microsoftsync.sytes.net

How to determine Malware.AI.216586621?


File Info:

crc32: C51513A8
md5: 79d5e30d176cf99d1f4115ff64e38892
name: 79D5E30D176CF99D1F4115FF64E38892.mlw
sha1: b36a7e2ba30d7f955d511ff4aaabc332cda58206
sha256: e66e52aa018beab1e95b1ada8a9e68b6da1ba8dd48b2fa04d65bf061384702af
sha512: e9e5ea33f4a69bd5b2b5ce57fc6b6ccfd14941a0e2e40870babf37a012984118f9bbc004ca04ec4b56072deb528cdc108e2a83c0ed71aa7e3b854436397dd370
ssdeep: 12288:+lSQ9Ze4S89O/dPSSPvdXjFitXLvRDUSFNHCarAeAWtyyJuXkgUC14gNquf:XQ9o4/9OdSkvNFcDR4SFUakothxCGQ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2018 FitGirl
InternalName: setup_soma_1.109_(13073)
FileVersion: 0.0.0.0
CompanyName: FitGirl
PrivateBuild:
LegalTrademarks:
Comments:
ProductName: SOMA
SpecialBuild:
ProductVersion: 0.0.0.0
FileDescription: SOMA Setup
OriginalFilename: setup_soma_1.109_(13073).exe
Translation: 0x0409 0x04e4

Malware.AI.216586621 also known as:

LionicTrojan.Win32.Generic.4!c
ALYacTrojan.GenericKD.40207202
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.39849
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
Cybereasonmalicious.d176cf
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.FZPFLFX
APEXMalicious
AvastFileRepMalware
KasperskyTrojan-Ransom.Win32.Blocker.kyrv
BitDefenderTrojan.GenericKD.40207202
NANO-AntivirusTrojan.Win32.Blocker.fajryy
MicroWorld-eScanTrojan.GenericKD.40207202
TencentWin32.Trojan.Blocker.Akzd
Ad-AwareTrojan.GenericKD.40207202
ComodoMalware@#3u2mp7rybasih
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.DownloadAdmin.hc
FireEyeTrojan.GenericKD.40207202
EmsisoftTrojan.GenericKD.40207202 (B)
WebrootW32.Trojan.GenKD
eGambitUnsafe.AI_Score_96%
MicrosoftTrojan:Win32/Occamy.CE6
GDataTrojan.GenericKD.40207202
AhnLab-V3Trojan/Win32.BitCoinMiner.C2243617
McAfeePacked-UP!79D5E30D176C
MAXmalware (ai score=99)
MalwarebytesMalware.AI.216586621
PandaTrj/CI.A
YandexTrojan.Blocker!SSG+aeVTlms
IkarusTrojan.SuspectCRC
FortinetW32/Packed.UP!tr
AVGFileRepMalware

How to remove Malware.AI.216586621?

Malware.AI.216586621 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment