Malware

Malware.AI.3109852360 malicious file

Malware Removal

The Malware.AI.3109852360 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3109852360 virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Detects Sandboxie through the presence of a library
  • Executed a process and injected code into it, probably while unpacking
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Malware.AI.3109852360?


File Info:

crc32: D90C5625
md5: ba0937c193bcbdf9628b97d0fc43554e
name: BA0937C193BCBDF9628B97D0FC43554E.mlw
sha1: 0443a7ee1af346e87a9a2d38ca80f8c2a2f5a4a9
sha256: 6908d4e3dd1164766445e0242c04affcdf87c655db45fca3ca7a97145079f50d
sha512: 0ee055c47b2e584ff5607edb255990d8a37a4d90c38115d378d39b4f57a0611f14370f82822346f6a17ca8cb823e171ed8ad0c68725acc9b13cc63997e1f664f
ssdeep: 3072:Taks0ZeHB+EqiFQ8w32OmLR3j7tWneqJaL/hDoDPYVV6E2rlMRBFueUSY3ksJZO:e4i2BmOc+BCsIIylL2ARb
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: asnr
FileVersion: 8.26.0022
CompanyName: ujw
Comments: n
ProductName: igle
ProductVersion: 8.26.0022
FileDescription: rkdcxy
OriginalFilename: asnr.exe

Malware.AI.3109852360 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Winlock.3300
CynetMalicious (score: 100)
ALYacGen:Variant.Symmi.63549
CylanceUnsafe
ZillyaTrojan.LockScreen.Win32.8490
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaRansom:Win32/PornoAsset.bdd22a8f
Cybereasonmalicious.193bcb
CyrenW32/VBInject.1!Generic
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/LockScreen.AGD
APEXMalicious
AvastWin32:VB-YGQ [Trj]
BitDefenderGen:Variant.Symmi.63549
NANO-AntivirusTrojan.Win32.PornoBlocker.cnriz
MicroWorld-eScanGen:Variant.Symmi.63549
TencentWin32.Trojan.Pornoasset.Pefp
Ad-AwareGen:Variant.Symmi.63549
SophosML/PE-A + Mal/VBCheMan-C
ComodoSuspicious@#3hm1lj1l4zdbj
BitDefenderThetaAI:Packer.EAEDE05920
McAfee-GW-EditionBehavesLike.Win32.Trojan.gm
FireEyeGeneric.mg.ba0937c193bcbdf9
EmsisoftGen:Variant.Symmi.63549 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.PornoAsset.gdj
AviraTR/Dropper.Gen
eGambitGeneric.Malware
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Vigorf.A
ArcabitTrojan.Symmi.DF83D
AegisLabTrojan.Win32.PornoAsset.j!c
ZoneAlarmTrojan-Ransom.Win32.PornoAsset.bew
GDataGen:Variant.Symmi.63549
AhnLab-V3Trojan/Win32.VBKrypt.C74429
McAfeeArtemis!BA0937C193BC
VBA32BScope.Trojan.VBKrypt
MalwarebytesMalware.AI.3109852360
PandaGeneric Malware
RisingRansom.PornoAsset!8.6AA (CLOUD)
YandexTrojan.PornoBlocker!vLdp0K6qpCU
IkarusTrojan.Win32.Jorik
FortinetW32/VBKrypt!tr
AVGWin32:VB-YGQ [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.3109852360?

Malware.AI.3109852360 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment