Malware

Malware.AI.3544129945 removal tips

Malware Removal

The Malware.AI.3544129945 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3544129945 virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Executed a process and injected code into it, probably while unpacking
  • Attempts to remove evidence of file being downloaded from the Internet
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Likely virus infection of existing system binary
  • Operates on local firewall’s policies and settings
  • Creates a copy of itself
  • Attempts to disable UAC
  • Attempts to disable Windows Defender
  • Attempts to modify or disable Security Center warnings
  • Anomalous binary characteristics

Related domains:

oktedentaries.com
fzfqphobttefkhbvkzs.com
pmyddiicql.com
pihxsxitdfzpvpgeusf.com
glurejnjtdbj.com
oomxzlhazpiz.com
pqfbnaszjaszcnnemowp.com
tuiuchbiwxpvwftigs.com
gowfrfmxojdqvh.com
oamcycqfv.com
vbiuzxeg.com
yrcvxkqumod.com
zhbvbxixvwryd.com
odzzlkkl.com
imbxorfmgtwqpmxnz.com
lefvcywsguk.com
glmisoefbos.com
mcmvkepyzgyycezgkkgx.com
shkjdvusfplos.com
wprbcllrqhqtzzppcr.com
uhoqegszviylqtiga.com
ktbqomgixqhtsxevonpw.com
cbufznnmmjg.com
goyzrabbwcbmocpyysvv.com
hmllogidbpjzpdujzxuf.com
vlxhxtmyw.com
absryzxeuqad.com
kxaptztmaqjbaquyojb.com
oopukseti.com
khmqilzoezcmcfjlzd.com
gnukorjgli.com
wvrujicjpykwrlohtlo.com
peorztbphu.com
rvvcdmfucq.com
gmjjemdaarxssx.com
buoopflcjkvcslmy.com
pexufhti.com
ltbrzorwvaosjgvqsno.com
ucgazxeavbemgzm.com
tjqvqoznelrbn.com
ojvkcspomuikonah.com
blwpjtwifspj.com
xmejpvjpvdozgnzmh.com
gbsyvthrxlexr.com
zhrvryjbgwgubffy.com
hfxueazawjagnbfdlw.com
gyjnegmuiqoresj.com
qzuihuucrav.com
czxktmibwsunnto.com
cuqxqbpbwo.com
unndqqmgludh.com

How to determine Malware.AI.3544129945?


File Info:

crc32: DF06BC01
md5: 7963138a54b322eedc5122379893312b
name: 7963138A54B322EEDC5122379893312B.mlw
sha1: 9aaedf814fef7fd0174894929b261e8b6f21e1f5
sha256: aa9707b896b617e588932c06f3ded3f4a171596fae2adeb3f5392da60ec7340f
sha512: 3edde9dff2bd5fd9f6ea950578308c9efa36eb441623aff8f6f28cfb0fdd1deaad9de5218a468a2f080bb10ca42b45b1046d4bb40bb5056b5df3235f36b93a37
ssdeep: 24576:Cgvru9thW8mH+N1zRPxxBcXYD678RlYbCfCV:CgTu9tEjyVpDcX2lrfCV
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Malware.AI.3544129945 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 7000000f1 )
CynetMalicious (score: 99)
ALYacGen:Variant.Symmi.36080
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 7000000f1 )
Cybereasonmalicious.a54b32
BitDefenderThetaGen:NN.ZelphiF.34738.ZOZ@au0N3Fp
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Filecoder.BH
APEXMalicious
AvastWin32:Delf-TTA [Trj]
KasperskyUDS:Trojan.Win32.Generic
BitDefenderGen:Variant.Symmi.36080
NANO-AntivirusTrojan.Win32.Encoder.cslmzt
MicroWorld-eScanGen:Variant.Symmi.36080
Ad-AwareGen:Variant.Symmi.36080
SophosML/PE-A + Troj/Ransom-ADA
DrWebTrojan.Encoder.283
VIPRETrojan.Win32.Dircrypt.c (v)
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
FireEyeGeneric.mg.7963138a54b322ee
EmsisoftGen:Variant.Symmi.36080 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Blocker.gha
AviraTR/Crypt.ASPM.Gen
Antiy-AVLTrojan/Generic.ASMalwS.39CF69
MicrosoftRansom:Win32/Dircrypt.A
AegisLabTrojan.Win32.Generic.4!c
GDataGen:Variant.Symmi.36080
McAfeeGenericRXKW-MB!7963138A54B3
MAXmalware (ai score=100)
VBA32Hoax.Blocker
MalwarebytesMalware.AI.3544129945
PandaGeneric Malware
RisingMalware.Heuristic!ET#88% (RDMK:cmRtazqkMfFC80JOI8ZUvG0PVPdI)
IkarusVirus.Win32.DelfInject
FortinetW32/Injector.ABS!tr
AVGWin32:Delf-TTA [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.3544129945?

Malware.AI.3544129945 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment