Malware

About “Malware.AI.2557253381” infection

Malware Removal

The Malware.AI.2557253381 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2557253381 virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Expresses interest in specific running processes
  • Reads data out of its own binary image
  • Executed a process and injected code into it, probably while unpacking
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

laspada.no-ip.biz

How to determine Malware.AI.2557253381?


File Info:

crc32: 2D25FDED
md5: f019e16c29a0a38e995237a4ae8315ec
name: F019E16C29A0A38E995237A4AE8315EC.mlw
sha1: dee75ffdf2b0e0a8dce6cafc2e948762111fe31e
sha256: 74c56e12a4a5c7dde54dd91ae8cc7032b83d4c98dd6f704214d197c10b959f67
sha512: 37ae0be4918c63dc2c65907193d165b08cf025a218b0aaba6aae60ce16969b90244290156571e56c7100f2aced6516f6c2783ac1e9336e7a77ac2bf0b79df900
ssdeep: 12288:waWzgMg7v3qnCiMErQohh0F4CCJ8lny/Q5WXbdtqUO2Ohycw6tI7X4S90h:3aHMv6Corjqny/QcXbdtTjOEzD4+a
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

CompiledScript: AutoIt v3 Script: 3, 3, 6, 1
FileVersion: 3, 3, 6, 1
FileDescription:
Translation: 0x0809 0x04b0

Malware.AI.2557253381 also known as:

BkavW32.AIDetectVM.malware2
DrWebBackDoor.Bifrost.20804
MicroWorld-eScanAIT:Trojan.GenericTKA.89
FireEyeAIT:Trojan.GenericTKA.89
ALYacAIT:Trojan.GenericTKA.89
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Script.Generic.4!c
SangforMalware
K7AntiVirusTrojan ( 700000111 )
BitDefenderAIT:Trojan.GenericTKA.89
K7GWTrojan ( 700000111 )
Cybereasonmalicious.c29a0a
BitDefenderThetaAI:Packer.B19BAB8E18
CyrenW32/AutoIt.BU.gen!Eldorado
SymantecTrojan.Gen.MBT
APEXMalicious
AvastAutoIt:AutoRun-S [Trj]
CynetMalicious (score: 85)
KasperskyHEUR:Trojan.Script.Generic
AlibabaTrojan:Win32/Bifrose.5db78952
NANO-AntivirusTrojan.Win32.Inject.bjrkno
ViRobotTrojan.Win32.Z.Inject.932854
TencentWin32.Trojan.Inject.dmyb
Ad-AwareAIT:Trojan.GenericTKA.89
SophosMal/Generic-S
ComodoMalware@#2jq5ai8n95z2s
F-SecureTrojan.TR/Dropper.Gen
ZillyaTrojan.Inject.Win32.52910
TrendMicroTROJ_GEN.R002C0GLJ20
McAfee-GW-EditionBehavesLike.Win32.Dropper.dc
EmsisoftAIT:Trojan.GenericTKA.89 (B)
JiangminTrojan/Inject.akbw
WebrootTrojan.Dropper.Gen
AviraTR/Dropper.Gen
MAXmalware (ai score=100)
KingsoftWin32.Troj.Inject.ew.(kcloud)
MicrosoftBackdoor:Win32/Bifrose
ArcabitAIT:Trojan.GenericTKA.89
SUPERAntiSpywareHeur.Agent/Gen-GalPic
ZoneAlarmHEUR:Trojan.Script.Generic
GDataAIT:Trojan.GenericTKA.89 (2x)
McAfeeArtemis!F019E16C29A0
VBA32Trojan-Downloader.Autoit.gen
MalwarebytesMalware.AI.2557253381
PandaGeneric Malware
ESET-NOD32a variant of Win32/Injector.Autoit.DAA
TrendMicro-HouseCallTROJ_GEN.R002C0GLJ20
IkarusWorm.Win32.AutoRun
FortinetW32/Inject.AZW!tr
AVGAutoIt:AutoRun-S [Trj]
Paloaltogeneric.ml
Qihoo-360HEUR/QVM10.2.99A5.Malware.Gen

How to remove Malware.AI.2557253381?

Malware.AI.2557253381 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment