Malware

How to remove “Malware.AI.3480051211”?

Malware Removal

The Malware.AI.3480051211 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3480051211 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Generates some ICMP traffic
  • Anomalous binary characteristics

Related domains:

xui.ptlogin2.qq.com

How to determine Malware.AI.3480051211?


File Info:

crc32: 7BE53D55
md5: edbda3aafb2c5d715f2377386c386f5d
name: EDBDA3AAFB2C5D715F2377386C386F5D.mlw
sha1: 957f783028336226dda66bb2f2b0694a2e169811
sha256: 94f83623697d41b76077f3656d7ed8669a423a5ea80d71ad9b12a2219d1ab7ee
sha512: daebeb03907135ea088a0dc17c14524d1c913cfa01702e3655521f4afd62450c9f55424d41b88e443d3c3e8a66029f8abaa69ae79e08a4906f03297dc6122f29
ssdeep: 24576:SstCv5I0KfBhz3Zd5YQVL5ysuf4IXo+y6VfE/M:SuUONBhJYQ3ysO4moCVfE/M
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x672cx6e90x7801x6765x81eawww.xiaodao.la
FileVersion: 1.0.0.0
CompanyName: x672cx6e90x7801x6765x81eawww.xiaodao.la
Comments: x672cx6e90x7801x6765x81eawww.xiaodao.la
ProductName: Crack KamGe
ProductVersion: 1.0.0.0
FileDescription: x672cx6e90x7801x6765x81eawww.xiaodao.la
Translation: 0x0804 0x04b0

Malware.AI.3480051211 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebBackDoor.BlackHole.55494
CynetMalicious (score: 100)
ALYacGen:Variant.Graftor.719880
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:Win32/Zenfly.0b70f7b5
K7GWAdware ( 0050718d1 )
Cybereasonmalicious.afb2c5
CyrenW32/Parasitic-Fileinfector-base
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
KasperskyTrojan.Win32.Zenfly.vh
BitDefenderGen:Variant.Graftor.719880
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanGen:Variant.Graftor.719880
Ad-AwareGen:Variant.Graftor.719880
SophosGeneric PUA JF (PUA)
BitDefenderThetaGen:NN.ZexaF.34688.lv1@aaFqCKjb
McAfee-GW-EditionBehavesLike.Win32.Infected.th
FireEyeGeneric.mg.edbda3aafb2c5d71
EmsisoftApplication.Generic (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Banker.Banbra.bph
AviraTR/Patched.Gen
eGambitUnsafe.AI_Score_100%
MicrosoftTrojan:Win32/Wacatac.B!ml
GridinsoftTrojan.Win32.Gen.bot!i
GDataGen:Variant.Graftor.719880
AhnLab-V3Trojan/Win.Generic.C4465469
Acronissuspicious
McAfeeArtemis!EDBDA3AAFB2C
MAXmalware (ai score=83)
VBA32BScope.Trojan.Downloader
MalwarebytesMalware.AI.3480051211
PandaGeneric Suspicious
TrendMicro-HouseCallTROJ_GEN.R005H0CE921
RisingHackTool.GameHack!1.B2A6 (CLOUD)
IkarusTrojan-PSW.QQpass
AVGWin32:CrypterX-gen [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.3480051211?

Malware.AI.3480051211 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment