Malware

Malware.AI.3199444212 removal guide

Malware Removal

The Malware.AI.3199444212 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3199444212 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Collects information to fingerprint the system

Related domains:

z.whorecord.xyz
a.tomx.xyz
oblomoff.fun

How to determine Malware.AI.3199444212?


File Info:

crc32: D87C6247
md5: 186e3c7c8a80ec38ff6ae040a4c543c2
name: 186E3C7C8A80EC38FF6AE040A4C543C2.mlw
sha1: fb2dbb4c9b770fd3a0f2d9b4db80c45f806651bb
sha256: 695754533aff23194b49e3c26f3269846cecbcda94e07a2608ff38c3ca9d81c3
sha512: 1ef1bc31f9ebf4cf3e036395a51a4c21dda07543de2c7887afb2a7cbd22d1387ea18ba64294207669fce8bb975686b1b8a25a2917cd11d03024e160e8c99ad9b
ssdeep: 6144:4AMU4C7VL+dCfP/AOZctOu6yyKgydohnGuADL:4AH4Cx5n/IOu6y1gyohkDL
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0789 0x04b1

Malware.AI.3199444212 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00533c5d1 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.24384
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacGen:Variant.Zusy.288673
ZillyaTrojan.Coins.Win32.164
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
K7GWTrojan ( 00533c5d1 )
Cybereasonmalicious.c8a80e
CyrenW32/S-5048a456!Eldorado
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.GHMX
APEXMalicious
AvastFileRepMalware
ClamAVWin.Malware.Zusy-9846039-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Zusy.288673
NANO-AntivirusTrojan.Win32.Coins.fdwygq
SUPERAntiSpywareRansom.GandCrab/Variant
MicroWorld-eScanGen:Variant.Zusy.288673
TencentMalware.Win32.Gencirc.10b3e150
Ad-AwareGen:Variant.Zusy.288673
SophosMal/Generic-R + Mal/GandCrab-D
ComodoTrojWare.Win32.Magniber.GHYT@7oo2vl
BitDefenderThetaGen:NN.ZexaF.34686.qyW@a8SZ9qf
VIPRETrojan.Win32.Generic!BT
TrendMicroMal_HPGen-37b
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
FireEyeGeneric.mg.186e3c7c8a80ec38
EmsisoftGen:Variant.Zusy.288673 (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.ConvertAd.acuv
AviraHEUR/AGEN.1103405
MicrosoftTrojan:Win32/GandCrypt.PVD!MTB
ArcabitTrojan.Zusy.D467A1
AegisLabTrojan.Win32.Generic.4!c
GDataWin32.Trojan.Kryptik.QP
AhnLab-V3Win-Trojan/Gandcrab02.Exp
Acronissuspicious
McAfeeTrojan-FPSE!186E3C7C8A80
MAXmalware (ai score=92)
VBA32BScope.TrojanRansom.GandCrypt
MalwarebytesMalware.AI.3199444212
PandaTrj/CI.A
TrendMicro-HouseCallMal_HPGen-37b
RisingMalware.Undefined!8.C (CLOUD)
YandexTrojan.GenAsa!gxY+c+l+LUc
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.CNAR!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Malware.AI.3199444212?

Malware.AI.3199444212 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment