Malware

About “Malware.AI.3805042104” infection

Malware Removal

The Malware.AI.3805042104 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3805042104 virus can do?

  • Network activity detected but not expressed in API logs

How to determine Malware.AI.3805042104?


File Info:

crc32: 0A1DC2B8
md5: 13d99c2ac641f89128925263d6ddc4f4
name: 13D99C2AC641F89128925263D6DDC4F4.mlw
sha1: 3e68058db2a6da752fd3e711955bed24440d6471
sha256: 55519e954b4b28f0d1497294eab96130c3932928fdf4a739c9a94a884379282f
sha512: 8aef281d74bdb0da823c4c91855563e82bf6bbbaaeb88a528d06992b59feeae64f1f6fbf4dc49e2d5e6de8dcfd9cabc2654b6a3acc5f7c30628c4d8d9f8285c5
ssdeep: 3072:lLxiRXtaZdv0vWxcpVrTY2QTaZ5aRk79SseQs39DrdxuD167PUOUc2UdDBjUHU0:z
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: All Rights Reserved
Assembly Version: 6.863.940.24
InternalName: x4134x4133x412ax412dx40fax4122x4112x4100x40fdx40f9x4119x412cx412ex412bx4100x412bx4110x40ffx40fbx40fdx412fx410cx4100x40f9x4100x4100x4100x40fax40fdx40fcx4102x412dx413bx40fdx40fbx4101x4134x4101x4102x4100x413cx40ffx412cx411ex4101x40fe.exe
FileVersion: 6.863.940.24
CompanyName: x4134x4133x412ax412dx40fax4122x4112x4100x40fdx40f9x4119x412cx412ex412bx4100x412bx4110x40ffx40fbx40fdx412fx410cx4100x40f9x4100x4100x4100x40fax40fdx40fcx4102x412dx413bx40fdx40fbx4101x4134x4101x4102x4100x413cx40ffx412cx411ex4101x40fe Inc.
LegalTrademarks: x4134x4133x412ax412dx40fax4122x4112x4100x40fdx40f9x4119x412cx412ex412bx4100x412bx4110x40ffx40fbx40fdx412fx410cx4100x40f9x4100x4100x4100x40fax40fdx40fcx4102x412dx413bx40fdx40fbx4101x4134x4101x4102x4100x413cx40ffx412cx411ex4101x40fe
Comments: x4134x4133x412ax412dx40fax4122x4112x4100x40fdx40f9x4119x412cx412ex412bx4100x412bx4110x40ffx40fbx40fdx412fx410cx4100x40f9x4100x4100x4100x40fax40fdx40fcx4102x412dx413bx40fdx40fbx4101x4134x4101x4102x4100x413cx40ffx412cx411ex4101x40fe
ProductName: x4134x4133x412ax412dx40fax4122x4112x4100x40fdx40f9x4119x412cx412ex412bx4100x412bx4110x40ffx40fbx40fdx412fx410cx4100x40f9x4100x4100x4100x40fax40fdx40fcx4102x412dx413bx40fdx40fbx4101x4134x4101x4102x4100x413cx40ffx412cx411ex4101x40fe
ProductVersion: 6.863.940.24
FileDescription: x4134x4133x412ax412dx40fax4122x4112x4100x40fdx40f9x4119x412cx412ex412bx4100x412bx4110x40ffx40fbx40fdx412fx410cx4100x40f9x4100x4100x4100x40fax40fdx40fcx4102x412dx413bx40fdx40fbx4101x4134x4101x4102x4100x413cx40ffx412cx411ex4101x40fe
OriginalFilename: x4134x4133x412ax412dx40fax4122x4112x4100x40fdx40f9x4119x412cx412ex412bx4100x412bx4110x40ffx40fbx40fdx412fx410cx4100x40f9x4100x4100x4100x40fax40fdx40fcx4102x412dx413bx40fdx40fbx4101x4134x4101x4102x4100x413cx40ffx412cx411ex4101x40fe.exe
Translation: 0x0000 0x0514

Malware.AI.3805042104 also known as:

K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebTrojan.PackedNET.726
CynetMalicious (score: 100)
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.db2a6d
CyrenW32/Trojan.AAIU-4726
SymantecML.Attribute.HighConfidence
ESET-NOD32MSIL/Spy.Agent.AES
APEXMalicious
AvastWin32:PWSX-gen [Trj]
KasperskyHEUR:Trojan.MSIL.Injuke.gen
BitDefenderTrojan.GenericKD.36878994
MicroWorld-eScanTrojan.GenericKD.36878994
Ad-AwareTrojan.GenericKD.36878994
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34688.cp0@a4Uangmi
McAfee-GW-EditionBehavesLike.Win32.Generic.wz
FireEyeGeneric.mg.13d99c2ac641f891
EmsisoftTrojan.GenericKD.36878994 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.MSIL.Stelega
eGambitUnsafe.AI_Score_97%
KingsoftWin32.PSWTroj.Undef.(kcloud)
MicrosoftTrojan:Win32/Woreflint.A!cl
AegisLabTrojan.MSIL.Stelega.i!c
GDataTrojan.GenericKD.36878994
McAfeeArtemis!13D99C2AC641
MAXmalware (ai score=87)
MalwarebytesMalware.AI.3805042104
TrendMicro-HouseCallTROJ_GEN.F0D1C00EB21
RisingTrojan.Injuke!8.10932 (CLOUD)
IkarusTrojan-Downloader.MSIL.Agent
FortinetPossibleThreat.PALLAS.H
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.3805042104?

Malware.AI.3805042104 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment