Malware

Should I remove “Malware.AI.3611166394”?

Malware Removal

The Malware.AI.3611166394 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3611166394 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Spanish
  • Uses Windows utilities for basic functionality
  • Creates a hidden or system file
  • Attempts to modify proxy settings

Related domains:

z.whorecord.xyz
a.tomx.xyz
www.bing.com
app.kartop.at
doc.dicin.at

How to determine Malware.AI.3611166394?


File Info:

crc32: AB8A1FCA
md5: abdbb4154f734939c84c02526de725ed
name: ABDBB4154F734939C84C02526DE725ED.mlw
sha1: aea281b973f99635a4e55928c1db3060c8d30cac
sha256: d0c9f3965e89291e96c53703533b313d8aaf17df5a9f67465f5f42b3c83db3ea
sha512: 1a7b4ad9530a779b5b1515becf8df3a263bc14da98e3fe0b6a629fd94e4d9b44a5976fd8f4c38af24e03e085f1fc451fe4c4edf33d233351a5a108457a8ecc3a
ssdeep: 3072:fzXNK0kCQIv4JeJio28XZWJGzGc+1mgq5AseHS+q5nwPHTa0T7Lhkvu+AylTOY:r9ZQA12q62GBq5A5HS+Yw7a0XLqvui
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

FileVersion: 4.6.2
Translation: 0x0809 0x04b0

Malware.AI.3611166394 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Chapak.4!c
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.24403
MicroWorld-eScanTrojan.Mint.Jamg.C
ALYacTrojan.Mint.Jamg.C
CylanceUnsafe
ZillyaTrojan.Chapak.Win32.12911
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Chapak.83773788
K7GWTrojan ( 0053d2981 )
K7AntiVirusTrojan ( 0053d2981 )
CyrenW32/Midie.N.gen!Eldorado
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
ClamAVWin.Ransomware.Gandcrab5-6697262-1
KasperskyTrojan.Win32.Chapak.avrp
BitDefenderTrojan.Mint.Jamg.C
NANO-AntivirusTrojan.Win32.Chapak.figjxe
ViRobotTrojan.Win32.GandCrab.251904
TencentWin32.Trojan.Chapak.Lqox
Ad-AwareTrojan.Mint.Jamg.C
SophosMal/Generic-S + Mal/GandCrab-G
ComodoTrojWare.Win32.Vigorf.GL@7vgi1m
BitDefenderThetaGen:NN.ZexaF.34142.qu0@aS6IU7N
EmsisoftTrojan.Mint.Jamg.C (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Chapak.vn
MicrosoftVirTool:Win32/CeeInject.QX!bit
ArcabitTrojan.Mint.Jamg.C
ZoneAlarmTrojan.Win32.Chapak.avrp
GDataTrojan.Mint.Jamg.C
AhnLab-V3Trojan/Win32.Gandcrab.R237848
Acronissuspicious
McAfeeTrojan-FQDU!ABDBB4154F73
MAXmalware (ai score=100)
VBA32BScope.TrojanDownloader.Upatre
MalwarebytesMalware.AI.3611166394
PandaTrj/GdSda.A
RisingTrojan.Generic@ML.97 (RDML:Jv9YNMzHmlNjsEXMCGHbFw)
YandexTrojan.GenAsa!07s4bktFFq4
IkarusTrojan.Crypt
eGambitUnsafe.AI_Score_85%
FortinetW32/Kryptik.GLOO!tr
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.3611166394?

Malware.AI.3611166394 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment