Malware

Malware.AI.3340237792 information

Malware Removal

The Malware.AI.3340237792 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3340237792 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process created a hidden window
  • Unconventionial language used in binary resources: Albanian
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • A process attempted to delay the analysis task by a long amount of time.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Attempts to identify installed AV products by registry key

Related domains:

m.saturdaybeerparty.com
z.saturdaybeerparty.com

How to determine Malware.AI.3340237792?


File Info:

crc32: 43E1BF05
md5: ba22edcf987cd8fce2d8f63916845446
name: BA22EDCF987CD8FCE2D8F63916845446.mlw
sha1: 2af22884a5755dfcde1e3604024bcc75e35f4291
sha256: 4f2f0bb8dbed0c9b6b4859c1a2f3941a00b2295a147eea4daad57e9f02e49dd0
sha512: d7c949e5854e384c30f1aa047f59d128f366a3d699a5ab0ab460314a004d6fbfb1626cd118f0bda6d5d80f42c22cefbf1aaf08e47f48ff783e8ed921ab130f8c
ssdeep: 3072:bGCDYO8KVE48KNAQrqBeGEkY6wzyoQMsIIQq2MYdmBNAw6qaQOTIqXkO:qC+o58AAqqBeGEkYZzKrIIQq1Roq282
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2017, fasoojreuyef
FileVersion: 10.1.10.11
ProductVersion: 2.13.5.66

Malware.AI.3340237792 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
FireEyeGeneric.mg.ba22edcf987cd8fc
McAfeeTrojan-FPST!BA22EDCF987C
CylanceUnsafe
ZillyaTrojan.GenericKD.Win32.176698
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00516fdf1 )
BitDefenderTrojan.Mint.Jamg.C
K7GWTrojan ( 00516fdf1 )
Cybereasonmalicious.f987cd
CyrenW32/Bunitu.Q.gen!Eldorado
SymantecPacked.Generic.525
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Chapak.aqyq
AlibabaTrojan:Win32/Bunitu.ali1000105
NANO-AntivirusTrojan.Win32.Chapak.fhrqfx
MicroWorld-eScanTrojan.Mint.Jamg.C
RisingRansom.GandCrypt!8.F33E (CLOUD)
Ad-AwareTrojan.Mint.Jamg.C
EmsisoftTrojan.Mint.Jamg.C (B)
ComodoTrojWare.Win32.Crypt.FCA@87yjrv
F-SecureHeuristic.HEUR/AGEN.1121533
DrWebTrojan.MulDrop8.35883
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
SophosMal/Generic-R + Mal/GandCrab-G
IkarusTrojan.Crypt
JiangminTrojan.PSW.Coins.bai
AviraHEUR/AGEN.1121533
MicrosoftTrojanProxy:Win32/Bunitu.Q!bit
ArcabitTrojan.Mint.Jamg.C
ZoneAlarmTrojan.Win32.Chapak.aqyq
GDataWin32.Trojan-Ransom.GandCrab.U
AhnLab-V3Win-Trojan/Gandcrab05.Exp
Acronissuspicious
BitDefenderThetaAI:Packer.69BEBA7520
VBA32BScope.Trojan.Vigorf
MalwarebytesMalware.AI.3340237792
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.GKFC
TencentMalware.Win32.Gencirc.114d4f3c
YandexTrojan.GenAsa!+X1kgjGxIz0
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Kryptik.GKJF!tr
WebrootW32.Trojan.Gen
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Win32/Trojan.bb6

How to remove Malware.AI.3340237792?

Malware.AI.3340237792 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment