Malware

What is “Malware.AI.2830131137”?

Malware Removal

The Malware.AI.2830131137 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2830131137 virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Queries information on disks, possibly for anti-virtualization
  • Attempts to modify proxy settings
  • Creates a slightly modified copy of itself

Related domains:

csdw.jia-si.cn
downdcdn.jia-si.cn
www.jia-si.cn

How to determine Malware.AI.2830131137?


File Info:

crc32: 802C264E
md5: 71739acd08710c5ebb6ef14b6b9b150a
name: 71739ACD08710C5EBB6EF14B6B9B150A.mlw
sha1: 5d74024ac4695f423a45f727b11706cb7a61a07a
sha256: 0342d2e227d1982a3c0a23d085bdd4d65c58e30706fc15b9a8dbba694d388d98
sha512: fd831cbb2f0fc1a4bac180a4e344fea5456d2610a2e4486d25268c56c76c08690cd089ce79866c4c097ed48d9464052a80040b9223f43799ec15b7ed84f4da60
ssdeep: 49152:6KLhUtcjzFEVV8KwmahmLb89rfVKGQQ6gj/8XKkjErFhv5PF6ffw3Che4:6KLIazFE4sIrfVjQR
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.2830131137 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusAdware ( 00535f0d1 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Siggen2.6227
CAT-QuickHealTrojan.Skeeyah.S3293683
McAfeeSoftcnapp
ZillyaTrojan.Generic.Win32.1383664
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWAdware ( 00535f0d1 )
Cybereasonmalicious.ac4695
CyrenW32/S-d2a266d3!Eldorado
SymantecPUA.Downloader
ESET-NOD32a variant of Win32/Softcnapp.BC potentially unwanted
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Mikey.131235
NANO-AntivirusTrojan.Win32.Softcnapp.fhmjfv
MicroWorld-eScanGen:Variant.Mikey.131235
TencentTrojan.Win32.Generic.e
Ad-AwareGen:Variant.Mikey.131235
SophosGeneric PUA FN (PUA)
ComodoApplication.Win32.AdWare.Softcnapp.O@80ok4p
BitDefenderThetaGen:NN.ZexaF.34294.OAW@aqH@52dj
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Softcnapp.vh
FireEyeGeneric.mg.71739acd08710c5e
EmsisoftApplication.Generic (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.cnukt
AviraHEUR/AGEN.1142834
eGambitUnsafe.AI_Score_97%
Antiy-AVLTrojan/Generic.ASMalwS.2771349
MicrosoftTrojan:Win32/Skeeyah.A!rfn
GDataGen:Variant.Mikey.131235
AhnLab-V3PUP/Win32.Helper.R233980
Acronissuspicious
VBA32BScope.Adware.Puwaders
MAXmalware (ai score=83)
MalwarebytesMalware.AI.2830131137
PandaTrj/Genetic.gen
RisingAdware.Downloader!1.BBEC (CLASSIC)
IkarusPUA.Softcnapp
MaxSecureTrojan.Malware.300983.susgen
FortinetAdware/Softcnapp
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.2830131137?

Malware.AI.2830131137 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment