Malware

Malware.AI.3733124284 (file analysis)

Malware Removal

The Malware.AI.3733124284 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3733124284 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.3733124284?


File Info:

crc32: 5D97CF8B
md5: 29ef7cd0d0a5f159ca574913265f6b5b
name: 29EF7CD0D0A5F159CA574913265F6B5B.mlw
sha1: 7278716b107c227817d3abcf978d9fa383cffb60
sha256: 36e16f776719e8718eb6d0f495b399d227755de8e3553ab8201509c28bd5f96e
sha512: 30145a245a112cded70897ec77232a0df58220df857255ef40f870b7943bf133845fac10dab0846ef2e5461b7490b90e64ea523d8452f09dd84c6d83ccbc9498
ssdeep: 12288:QhmpjBSUB0sb0kL/LPHFIUOG/GjFOH8RfmlOI1JtWcItJYYzs6XoAPNk:QOjQUBd0kL/LcROH4+j1JtWc9eX
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: x795ex5e99 Q458205863 x7248x6743x6240x6709xff0cx7ffbx7248x5fc5x7a76 2019.9.27
FileVersion: 4.5.0.0
CompanyName: x795ex5e99 Q458205863
Comments: x795ex5e99Steamx9ed1x53f7x4e00x952ex5199x6388x6743 v4.5 byx795ex5e99 Q458205863
ProductName: x795ex5e99Steamx9ed1x53f7x4e00x952ex5199x6388x6743 v4.5
ProductVersion: 4.5.0.0
FileDescription: x795ex5e99Steamx9ed1x53f7x4e00x952ex5199x6388x6743 v4.5 byx795ex5e99 Q458205863
Translation: 0x0804 0x04b0

Malware.AI.3733124284 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005246d51 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
SangforTrojan.Win32.Sabsik.FT
CrowdStrikewin/malicious_confidence_90% (W)
K7GWTrojan ( 00013a151 )
Cybereasonmalicious.b107c2
CyrenW32/OnlineGames.HG.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEXMalicious
SophosGeneric PUA HC (PUA)
ComodoTrojWare.Win32.Agent.OSCF@5rs7jr
BitDefenderThetaGen:NN.ZexaF.34690.UmKfa0A1r9hb
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
FireEyeGeneric.mg.29ef7cd0d0a5f159
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataWin32.Trojan.PSE.1FOH0JX
Acronissuspicious
McAfeeArtemis!29EF7CD0D0A5
MalwarebytesMalware.AI.3733124284
RisingMalware.Heuristic!ET#91% (RDMK:cmRtazr1tn35CW3rWgg6yuaNmFfM)
IkarusTrojan.Win32.Disabler
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/Application
Paloaltogeneric.ml

How to remove Malware.AI.3733124284?

Malware.AI.3733124284 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment