Malware

Malware.AI.3474338017 removal tips

Malware Removal

The Malware.AI.3474338017 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3474338017 virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Performs some HTTP requests
  • Behavior consistent with a dropper attempting to download the next stage.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
fruitnext.top
caribz.club

How to determine Malware.AI.3474338017?


File Info:

crc32: 53E9843E
md5: 60181e1ea744f0162ec0f3433cfc88c0
name: 60181E1EA744F0162EC0F3433CFC88C0.mlw
sha1: 6f71c7bcb08f937ac1244537b84799258d34be3c
sha256: 1de915b0032055d9f881e3960116a3017ff499622b344dbed1a282a6b3d488bc
sha512: d20eda3d81088aea37c8c18bc467a6bb30f5d0338c8b8cfcc0835e93014652887d68e9f3499e012f6d5c1ac19ad1c7553abbfebf4f142e1346b6b1a5e9ab7efb
ssdeep: 6144:yo4UQHWoSpT8KzF5nAV5h8MTHCGEpBkhRID5xDyQfcQQWfrxc6O:y2oSaKk+CCGEHfgcrxZO
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: hrs etyntehhseh ghcvbdfxdbhdfgdfgrhtZerro iteshad BARTA. All rights reserved.
InternalName: jin ertyntu vizos Software Assistant rr 32
FileVersion: 1446.132.441.73
CompanyName: hkse mteybeyth fcvbdfxdbhgfghddfgdfgegyZerro itookal Brasted
Comments: jjtmuyif, ffffffffffdtukyiuk tt nertumr tttttttttthdtyhertg q jfjjftyuklyilyuktyuklyiljftyuklyilv b s g xInstalls software 32
ProductName: fgg vdsrhgnb jdtyjuku kjyukfuykfyukfyuk MSI xxxNSIS 3 easy installer
ProductVersion: 168.162.444.72
FileDescription: ketynjtyj mDownload assistant
Translation: 0x0409 0x04b0

Malware.AI.3474338017 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan-Downloader ( 00520e9e1 )
LionicTrojan.Win32.Generic.4!c
DrWebTrojan.DownLoader26.9530
CynetMalicious (score: 100)
ALYacGen:Heur.Conjar.1
CylanceUnsafe
ZillyaTrojan.Generic.Win32.66144
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojanDownloader:Win32/Tovkater.33cdde43
K7GWTrojan-Downloader ( 00520e9e1 )
Cybereasonmalicious.ea744f
CyrenW32/Tovkater.N.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.Tovkater.IC
APEXMalicious
AvastWin32:DropperX-gen [Drp]
ClamAVWin.Malware.Tovkater-6956309-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Heur.Conjar.1
NANO-AntivirusRiskware.Win32.InstMonster.ewnofw
MicroWorld-eScanGen:Heur.Conjar.1
TencentWin32.Trojan.Generic.Wkbw
Ad-AwareGen:Heur.Conjar.1
SophosMal/Generic-S
ComodoMalware@#2d0njo9h0hl3f
BitDefenderThetaAI:Packer.227F55A221
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Downloader.fc
FireEyeGeneric.mg.60181e1ea744f016
EmsisoftGen:Heur.Conjar.1 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1117983
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.23D99DF
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Occamy.C
GDataNSIS.Trojan-Downloader.Tovkater.C
AhnLab-V3PUP/Win32.ICLoader.C2053864
Acronissuspicious
McAfeeArtemis!60181E1EA744
MAXmalware (ai score=98)
VBA32TrojanDownloader.Tovkater
MalwarebytesMalware.AI.3474338017
PandaTrj/Genetic.gen
RisingDownloader.Tovkater/NSIS!1.AF36 (CLASSIC)
YandexTrojan.Agent!+7jFJUBc/sk
FortinetW32/Tovkater.IA!tr.dldr
AVGWin32:DropperX-gen [Drp]
Paloaltogeneric.ml

How to remove Malware.AI.3474338017?

Malware.AI.3474338017 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment