Malware

Malware.AI.2794976609 removal tips

Malware Removal

The Malware.AI.2794976609 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2794976609 virus can do?

  • Executable code extraction
  • Compression (or decompression)
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Reads data out of its own binary image

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.2794976609?


File Info:

crc32: 3B6E5528
md5: f47c32645aaab6f849070d18933d2889
name: F47C32645AAAB6F849070D18933D2889.mlw
sha1: df56bf6085ffcdca2cda14c66ad00c2532e5d10e
sha256: 185d9b2c8735c3d979da6c1107078cd8c41a41c2a56309e4eedcda3113c1e7ae
sha512: e447fc29b1515ad64b760972d7bf8c97148e0d4dd33993833547f3c74355e0669d027ab7a7d6d7a9a8648c03d4ac253ee00581d9a86efad2c83f7b6f884b4285
ssdeep: 1536:HHxTBqsIe9tmS7V4O6C5/UYV0HON7FjIDN4wTTBw3DvExs:HdBNnm0VL6ssy0uN7lIZ4wWzvws
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Capacitive xa9 2011
InternalName: Engels
FileVersion: 0,108,46,223
CompanyName: Wacom Technology, Corp.
LegalTrademarks:
ProductName: Cleaned Complicit
ProductVersion: 0,107,4,18
FileDescription: Contents
OriginalFilename: Borer.exe

Malware.AI.2794976609 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 004dd99f1 )
LionicTrojan.Win32.Waldek.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen6.56735
CynetMalicious (score: 100)
ALYacTrojan.TeslaCrypt.Gen.4
CylanceUnsafe
ZillyaTrojan.Waldek.Win32.701
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/HPCRYPTESLA.86b6cc07
K7GWTrojan ( 004dd99f1 )
Cybereasonmalicious.45aaab
BaiduWin32.Trojan.Kryptik.qb
CyrenW32/S-9434d151!Eldorado
SymantecTrojan.Gen
ESET-NOD32Win32/Tiny.NBQ
APEXMalicious
AvastWin32:Dorder-X [Trj]
ClamAVWin.Trojan.Teslacrypt-17
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.TeslaCrypt.Gen.4
NANO-AntivirusTrojan.Win32.Waldek.eaxclm
MicroWorld-eScanTrojan.TeslaCrypt.Gen.4
TencentMalware.Win32.Gencirc.10c0bbd5
Ad-AwareTrojan.TeslaCrypt.Gen.4
SophosMal/Generic-S
ComodoMalware@#10tz5fie5plq
BitDefenderThetaGen:NN.ZexaF.34142.fq1@amkbh2b
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_HPCRYPTESLA.SM2
McAfee-GW-EditionGenericR-GJS!F47C32645AAA
FireEyeGeneric.mg.f47c32645aaab6f8
EmsisoftTrojan.TeslaCrypt.Gen.4 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Waldek.ayi
AviraHEUR/AGEN.1124212
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.17715CA
MicrosoftTrojan:Win32/Dynamer!ac
ArcabitTrojan.TeslaCrypt.Gen.4
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.TeslaCrypt.Gen.4
TACHYONTrojan/W32.Waldek.94209
McAfeeGenericR-GJS!F47C32645AAA
MAXmalware (ai score=80)
VBA32BScope.Trojan.Anobato
MalwarebytesMalware.AI.2794976609
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_HPCRYPTESLA.SM2
YandexTrojan.GenAsa!gluCNH6Ezkg
IkarusTrojan-Ransom.TeslaCrypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.EQFZ!tr
AVGWin32:Dorder-X [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.2794976609?

Malware.AI.2794976609 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment