Malware

Malware.AI.3785679347 removal guide

Malware Removal

The Malware.AI.3785679347 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3785679347 virus can do?

  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Attempts to modify desktop wallpaper
  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Harvests information related to installed mail clients
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.3785679347?


File Info:

crc32: 38464119
md5: 9c178c87561fe518a3034e78e0041b3f
name: 9C178C87561FE518A3034E78E0041B3F.mlw
sha1: 070ff51cf5d69f61e0b51c963d83a42611f43194
sha256: d6e44edef14d894b837019be4235b6d0d61e2526cf6e088f6955c8fd0c7d4230
sha512: efa6d31bcce220c79f771cd491db6a5dcaae18dd8ea2f42c181491ae68b95a96c9ab1aff4fe0616f728cc8c8f8ba243a37986f83bcfb13f0e495b190f48980f2
ssdeep: 12288:Dk5L2FqPboE9GToedDtgs71EFXJcMkntzlJcX7ekiJ8Q2:D2yQPboESo+DtgsC3WgrefO
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: explorer
FileVersion: 6.1.7601.23537 (win7sp1_ldr.160829-0600)
CompanyName: Microsoft Corporation
ProductName: Microsoftxae Windowsxae Operating System
ProductVersion: 6.1.7601.23537
FileDescription: Windows Explorer
OriginalFilename: EXPLORER.EXE
Translation: 0x0409 0x04b0

Malware.AI.3785679347 also known as:

K7AntiVirusTrojan ( 005246d51 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop7.51349
CynetMalicious (score: 99)
CAT-QuickHealRisktool.Flystudio.17514
ALYacTrojan.Ransom.UselessFiles
CylanceUnsafe
AlibabaWorm:Win32/Diztakun.4860e7ef
K7GWTrojan ( 005246d51 )
Cybereasonmalicious.7561fe
CyrenW32/OnlineGames.HI.gen!Eldorado
SymantecRansom.Enciphered
ESET-NOD32multiple detections
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Trojan.Agent-6527677-0
KasperskyTrojan.Win32.Diztakun.bioi
BitDefenderTrojan.GenericKD.40506954
NANO-AntivirusTrojan.Win32.FlyStudio.fatwyf
MicroWorld-eScanTrojan.GenericKD.40506954
TencentWin32.Trojan.Diztakun.Htlv
Ad-AwareTrojan.GenericKD.40506954
SophosGeneric ML PUA (PUA)
ComodoMalware@#13e8ohrmi50i
BitDefenderThetaGen:NN.ZexaF.34170.umGfa8uRQbab
VIPRETrojan.Win32.OnlineGames
TrendMicroRansom_USELESS.THEODAH
FireEyeTrojan.GenericKD.40506954
EmsisoftTrojan.GenericKD.40506954 (B)
JiangminTrojan.Banker.Banbra.cnm
AviraTR/Muldrop.sqhkb
Antiy-AVLTrojan/Generic.ASCommon.FA
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Occamy.C
GDataWin32.Trojan.PSE.11B5R9D
AhnLab-V3Trojan/Win32.Siggen.C197991
McAfeeArtemis!9C178C87561F
MAXmalware (ai score=97)
VBA32Trojan-Banker.Banbra
MalwarebytesMalware.AI.3785679347
PandaTrj/CI.A
TrendMicro-HouseCallRansom_USELESS.THEODAH
YandexTrojan.Diztakun!YbEygng65Gs
IkarusTrojan.Hosts
FortinetRiskware/Application
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Malware.AI.3785679347?

Malware.AI.3785679347 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment