Malware

How to remove “Malware.AI.3047796764”?

Malware Removal

The Malware.AI.3047796764 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3047796764 virus can do?

  • Reads data out of its own binary image
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Malware.AI.3047796764?


File Info:

crc32: 2A3634DD
md5: 5f4f462eccd8a92c598f3611b8cec1ac
name: 5F4F462ECCD8A92C598F3611B8CEC1AC.mlw
sha1: 8ae752dcecd08eb59fd9b6fa7c5d948afa4c6333
sha256: 3a61fb1b8299416b7dfee29eb667ec28864f174873fd29728bd0d58a9c3e6825
sha512: 7dfd27df33f42630785d372bc5d36afb32d4fb9fcd7f7a510efb36859ad2b5e5b52c11f3572e0a7bb1b238ccad1ea6a78873b4dc3f290ceaa55a9e5c56297482
ssdeep: 384:bQ00crMPJYnnFMCKe9L628JaPyYXn8b39z9vRA:000cAP6nKkL63kE9z9v
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x7248x6743x6240x6709(C) 2000-2002x5e74 x5218x5065x82f1
InternalName: KEYMAKE
FileVersion: 1.73
CompanyName: x5218x5065x82f1
ProductName: x6ce8x518cx5668
ProductVersion: 1.73
FileDescription: x6ce8x518cx5668
OriginalFilename: KEYMAKE.EXE
Translation: 0x0804 0x04b0

Malware.AI.3047796764 also known as:

K7AntiVirusTrojan ( 004be88b1 )
Elasticmalicious (high confidence)
DrWebBackDoor.Way.62
CynetMalicious (score: 100)
CAT-QuickHealTrojan.MauvaiseRI.S5243132
ALYacGen:Variant.Application.Yek.1
CylanceUnsafe
ZillyaBackdoor.Way.Win32.71
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojan:Win32/EncPk.7720a4d9
K7GWTrojan ( 004be88b1 )
BaiduWin32.Trojan.Generic.h
CyrenW32/Keygen.L.gen!Eldorado
SymantecTrojan Horse
ESET-NOD32Win32/Agent.OOP
APEXMalicious
AvastWin32:Downloader-VYJ [Trj]
ClamAVWin.Trojan.Agent-740277
BitDefenderGen:Variant.Application.Yek.1
NANO-AntivirusTrojan.Win32.Way.cocrda
ViRobotBackdoor.Win32.Bifrose.18803
SUPERAntiSpywareTrojan.Agent/Gen-Banker
MicroWorld-eScanGen:Variant.Application.Yek.1
TencentMalware.Win32.Gencirc.10ce4501
Ad-AwareGen:Variant.Application.Yek.1
SophosMal/EncPk-MR
ComodoApplicUnwnt.Win32.Keymake.~0@1qtjw3
BitDefenderThetaGen:NN.ZexaF.34692.bmLfaiu!JAkb
VIPRETrojan.Win32.Packer.UPX-ScramblerRCv1.x (ep)
TrendMicroTROJ_AGENT.LAX
McAfee-GW-EditionGeneric KeyGen.a
FireEyeGeneric.mg.5f4f462eccd8a92c
EmsisoftGen:Variant.Application.Yek.1 (B)
SentinelOneStatic AI – Suspicious PE
Webroot
MicrosoftTrojan:Win32/Tnega!ml
GridinsoftTrojan.Win32.Agent.dd!s2
GDataWin32.Trojan.KeyMake.A
AhnLab-V3Trojan/Win32.Agent.R5256
McAfeeGenericRXAA-AA!5F4F462ECCD8
MAXmalware (ai score=71)
VBA32BScope.Backdoor.Way
MalwarebytesMalware.AI.3047796764
PandaHacktool/Keymake
TrendMicro-HouseCallTROJ_AGENT.LAX
RisingTrojan.Agent!1.C6A4 (CLOUD)
YandexTrojan.GenAsa!SAsv8e+2OLQ
IkarusBackdoor.Win32.Way
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.OOP!tr
AVGWin32:Downloader-VYJ [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.3047796764?

Malware.AI.3047796764 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment