Malware

Should I remove “Malware.AI.3771094811”?

Malware Removal

The Malware.AI.3771094811 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3771094811 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Attempts to stop active services
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Attempts to disable UAC
  • Attempts to modify or disable Security Center warnings
  • Attempts to modify user notification settings

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.3771094811?


File Info:

crc32: 93C88791
md5: 033cc03062f2b99f844b05a6684097e4
name: 033CC03062F2B99F844B05A6684097E4.mlw
sha1: 549c72282fd98c9cd459d5922557062d0c5437ad
sha256: 2460f09a62154925ed315c1e6c8d6b5d38cd4498e2ef8a5c31771affe5696cb9
sha512: 047d699e806a9a1123f5ff753d584e6d612439834c758c1ba197ecb73a10016fe35954b414e75043b7a930f88237d65075a9d2fc719663ed97afae62eef39882
ssdeep: 12288:n2UaAhMXIqCGwIa49loo6Q1OoaVex4+IPw:n2Ud2XhzaiobQ1Ooa
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
FileDescription: 433 KB
FileVersion:
Comments: 433 KB
CompanyName:
Translation: 0x0409 0x04e4

Malware.AI.3771094811 also known as:

K7AntiVirusTrojan ( 005191a61 )
DrWebTrojan.Fakealert.46185
CynetMalicious (score: 100)
CAT-QuickHealRogue.FakeRean
ALYacGen:Heur.Honret.1
CylanceUnsafe
SangforSuspicious.Win32.FakeAlert-FHL.033CC03062F2
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaRansom:Win32/Blocker.3d6b6fdc
K7GWTrojan ( 005191a61 )
Cybereasonmalicious.062f2b
CyrenW32/A-840b2802!Eldorado
SymantecTrojan.Ransomlock!g44
ESET-NOD32Win32/Adware.SystemSecurity.AL
APEXMalicious
AvastWin32:Adware-gen [Adw]
ClamAVWin.Trojan.Winwebsec-9828352-0
KasperskyTrojan-Ransom.Win32.Blocker.dkqw
BitDefenderGen:Heur.Honret.1
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanGen:Heur.Honret.1
TencentWin32.Trojan.Fakeav.bfw
Ad-AwareGen:Heur.Honret.1
SophosMal/Generic-S
ComodoMalware@#1jshcnpgamniz
BitDefenderThetaAI:Packer.C5F0424C14
VIPRETrojan.Win32.Kryptik.atxk (v)
TrendMicroRansom_Blocker.R002C0CG921
McAfee-GW-EditionBehavesLike.Win32.Dropper.gc
FireEyeGeneric.mg.033cc03062f2b99f
EmsisoftGen:Heur.Honret.1 (B)
AviraDR/Delphi.Gen8
eGambitUnsafe.AI_Score_86%
MicrosoftRogue:Win32/Winwebsec
SUPERAntiSpywareTrojan.Agent/Gen-FakeSecurity
GDataGen:Heur.Honret.1
AhnLab-V3Trojan/Win32.FakeAV.R52852
McAfeeFakeAlert-FHL!033CC03062F2
MAXmalware (ai score=85)
VBA32Trojan.FakeAV
MalwarebytesMalware.AI.3771094811
PandaTrj/Dtcontx.B
TrendMicro-HouseCallRansom_Blocker.R002C0CG921
RisingTrojan.Generic@ML.80 (RDML:O3kWQHp4SxNOh/G3QqqVKw)
YandexTrojan.FakeAV!XccEm3yLvnk
IkarusTrojan.Win32.FakeAV
MaxSecureTrojan.Malware.5302798.susgen
FortinetW32/FakeSecurity.AL!tr
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Blocker.HxQBEpsA

How to remove Malware.AI.3771094811?

Malware.AI.3771094811 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment