Malware

About “Malware.AI.2246013625” infection

Malware Removal

The Malware.AI.2246013625 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2246013625 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Loads a driver
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Deletes its original binary from disk
  • A process attempted to delay the analysis task by a long amount of time.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.2246013625?


File Info:

crc32: EC2105D2
md5: 2f3849f2409af51fc2777d337c574584
name: 2F3849F2409AF51FC2777D337C574584.mlw
sha1: 894ca193c3430932646aee9c6c9a6fb000c8caa9
sha256: c62f8b5459fd4ff643063e944b5e096852d8fd152d9fa6b9cefba27f6a1fbb01
sha512: 9c7038b0ae4cfd2269ea1c222526ec56a20f236a05671e4f577d39a63802e90ec15a79b0d120d09ee33d5d972b9406e98f1916ae329f7a5a4aba5d0e69b04fd4
ssdeep: 24576:upZwk+goJPlhQQKQJGdjij5yAYW/jfZPIrBhBMb8:upO1QQIjiVcW
type: PE32 executable (GUI) Intel 80386, for MS Windows, COFF

Version Info:

0: [No Data]

Malware.AI.2246013625 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005602581 )
Elasticmalicious (high confidence)
DrWebTrojan.Siggen11.39343
CynetMalicious (score: 100)
ALYacDeepScan:Generic.Keylogger.2.9F500A24
CylanceUnsafe
ZillyaTrojan.GenKryptik.Win32.81046
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojanDownloader:Win32/Zegost.9c44da4d
K7GWTrojan ( 005602581 )
Cybereasonmalicious.2409af
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.DZUJ
APEXMalicious
AvastWin32:BackdoorX-gen [Trj]
KasperskyUDS:Trojan.Win32.Generic
BitDefenderDeepScan:Generic.Keylogger.2.9F500A24
NANO-AntivirusTrojan.Win32.GenKryptik.ieodis
MicroWorld-eScanDeepScan:Generic.Keylogger.2.9F500A24
Ad-AwareDeepScan:Generic.Keylogger.2.9F500A24
SophosMal/Generic-R
BitDefenderThetaAI:Packer.833437A71F
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R005C0DEH21
FireEyeGeneric.mg.2f3849f2409af51f
EmsisoftDeepScan:Generic.Keylogger.2.9F500A24 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.gnpip
AviraTR/Crypt.XPACK.Gen
eGambitUnsafe.AI_Score_77%
MicrosoftTrojanDownloader:Win32/Zegost.E!bit
ArcabitDeepScan:Generic.Keylogger.2.9F500A24
GDataDeepScan:Generic.Keylogger.2.9F500A24
AhnLab-V3Malware/Win32.RL_Generic.R356012
Acronissuspicious
McAfeeGenericRXNT-PG!2F3849F2409A
MAXmalware (ai score=80)
VBA32BScope.Backdoor.Farfli
MalwarebytesMalware.AI.2246013625
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R005C0DEH21
RisingBackdoor.Zegost!8.177 (CLOUD)
YandexTrojan.GenAsa!aUeFk+Sxvek
IkarusBackdoor.Win32.Zegost
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/GenKryptik.DJUZ!tr
AVGWin32:BackdoorX-gen [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.2246013625?

Malware.AI.2246013625 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment