Malware

Malware.AI.3687109605 removal tips

Malware Removal

The Malware.AI.3687109605 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3687109605 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

trick.matchoatmeal.icu
fuss.wavesfork.online

How to determine Malware.AI.3687109605?


File Info:

crc32: 2414ABCF
md5: 545029ff6d8b384bf0e272647a8bc758
name: 545029FF6D8B384BF0E272647A8BC758.mlw
sha1: 959403dc997c32342ea3382195cc784fd5b4e9d7
sha256: 1e2470ff16f426f0e107f4102d317aee20f2dc18117fd3510de8b51a4c5d6b91
sha512: a0152515ca04296dd0203b95bd7ce8ff605ea5e0068ca49348f30b80cf61fd5599c52b1b45fe5ed560c69689c8445da10750bfe478f9c4cef59f5136a6cfc714
ssdeep: 24576:D+GBS+F7iU3hLfU/hVvj3gQ2CBo6igRzF+yldO9IJdIOF7hrM4iu:V9R6hJZ1VGIJba
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9Regiw neepytogo ogranaihh
InternalName: ONNINORA.EXE
FileVersion: 1.7.9.7
CompanyName: xa9Regiw neepytogo ogranaihh
ProductName: ONNINORA
ProductVersion: 1.7.9.7
OriginalFilename: onninora.exe
Translation: 0x0409 0x04e4

Malware.AI.3687109605 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005400221 )
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.17867
CynetMalicious (score: 100)
ALYacApplication.Bundler.BOU
CylanceUnsafe
ZillyaAdware.StartSurf.Win32.74223
SangforTrojan.Win32.Save.a
AlibabaAdWare:Win32/StartSurf.fb4c38a9
K7GWTrojan ( 005400221 )
Cybereasonmalicious.f6d8b3
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GLSL
APEXMalicious
AvastWin32:LoadMoney-ATT [Adw]
Kasperskynot-a-virus:AdWare.Win32.StartSurf.dxxo
BitDefenderApplication.Bundler.BOU
NANO-AntivirusTrojan.Win32.Vittalia.fjygmf
MicroWorld-eScanApplication.Bundler.BOU
TencentMalware.Win32.Gencirc.10ba4c8d
Ad-AwareApplication.Bundler.BOU
SophosIStartSurfInstaller (PUA)
ComodoMalCrypt.Indus!@1qrzi1
BitDefenderThetaGen:NN.ZexaF.34266.Qv0@aKeABYgi
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.tm
FireEyeGeneric.mg.545029ff6d8b384b
EmsisoftApplication.Bundler.BOU (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.StartSurf.rnh
AviraHEUR/AGEN.1113057
eGambitUnsafe.AI_Score_87%
Antiy-AVLTrojan/Generic.ASMalwS.28F9B68
MicrosoftTrojan:Win32/Occamy.C
ArcabitApplication.Bundler.BOU
GDataApplication.Bundler.BOU
AhnLab-V3PUP/Win32.StartSurf.R244241
Acronissuspicious
McAfeePacked-FKC!545029FF6D8B
MAXmalware (ai score=100)
VBA32BScope.Adware.StartSurf
MalwarebytesMalware.AI.3687109605
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B33C (CLASSIC)
YandexPUA.StartSurf!TXi9mtlHLWY
IkarusPUA.Dlhelper
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GLWA!tr
AVGWin32:LoadMoney-ATT [Adw]
Paloaltogeneric.ml

How to remove Malware.AI.3687109605?

Malware.AI.3687109605 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment