Malware

What is “Malware.AI.3464690311”?

Malware Removal

The Malware.AI.3464690311 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3464690311 virus can do?

  • Expresses interest in specific running processes
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Uses Windows utilities for basic functionality
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Attempts to modify proxy settings
  • Creates a copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.3464690311?


File Info:

crc32: 43C4E842
md5: 7cf1135118d3b5ae5ec33597dea64913
name: 7CF1135118D3B5AE5EC33597DEA64913.mlw
sha1: b266e4c09150fe1cc9abb2d3c41449714682290a
sha256: c8ed200ba86d778ebd5d0a779c1826840e7fd5c67c8199ffa619fde67358bdd1
sha512: d66380b50760190f74200cf2913e3ec65add19110419cb67d8f30f5f436a867130cfab2bba406373cf3f8ac34eab22f385358789424a3c7a3634479a2778b38d
ssdeep: 12288:GozGdX0M4ornOmZIzfMwHHQmRROXKJZleupjwBsNAUGNAMG:G4GHnhIzOaJdp6MOU
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

ProductName: White Fox
FileDescription: White Fox iCloud Bruteforcer
FileVersion: 3.1.2.6
CompanyName: Blackshades
Translation: 0x0809 0x04b0

Malware.AI.3464690311 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005093361 )
LionicTrojan.Win32.Snocry.4!c
DrWebWin32.HLLW.Autoruner2.28475
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.4989672
CylanceUnsafe
ZillyaWorm.Filecoder.Win32.132
SangforRansom.Win32.Snocry.dco
CrowdStrikewin/malicious_confidence_70% (D)
AlibabaRansom:Win32/Snocry.71ccfc9c
K7GWTrojan ( 005093361 )
Cybereasonmalicious.118d3b
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.Philadelphia.F
APEXMalicious
AvastAutoIt:Injector-IU [Trj]
KasperskyTrojan-Ransom.Win32.Snocry.dco
BitDefenderTrojan.GenericKD.4989672
NANO-AntivirusTrojan.Win32.Snocry.eohfnu
MicroWorld-eScanTrojan.GenericKD.4989672
TencentMalware.Win32.Gencirc.10b3ba7d
Ad-AwareTrojan.GenericKD.4989672
SophosTroj/Stampado-A
ComodoMalware@#3gw2w6j3hqleo
BitDefenderThetaAI:Packer.B4380A1715
VIPRETrojan.Win32.Generic.pak!cobra
TrendMicroRansom_STAMPADO.F117E5
McAfee-GW-EditionBehavesLike.Win32.TrojanAitInject.jc
FireEyeTrojan.GenericKD.4989672
EmsisoftTrojan.GenericKD.4989672 (B)
WebrootW32.Ransom.Gen
AviraHEUR/AGEN.1102726
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASCommon.168
MicrosoftVirTool:INF/Autorun!rfn
GDataTrojan.GenericKD.4989672
AhnLab-V3Trojan/Win32.Snocry.C2279133
McAfeeArtemis!7CF1135118D3
MAXmalware (ai score=100)
VBA32Hoax.Snocry
MalwarebytesMalware.AI.3464690311
PandaTrj/CI.A
TrendMicro-HouseCallRansom_STAMPADO.F117E5
RisingTrojan.Obfus/Autoit!1.BEDE (CLASSIC)
IkarusWorm.Win32.FileCrypter
FortinetAutoIt/Philadelphia.4936!tr.ransom
AVGAutoIt:Injector-IU [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HgIASOMA

How to remove Malware.AI.3464690311?

Malware.AI.3464690311 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment