Malware

Malware.AI.3907154794 removal instruction

Malware Removal

The Malware.AI.3907154794 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3907154794 virus can do?

  • Attempts to connect to a dead IP:Port (2 unique times)
  • Drops a binary and executes it
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

www.bing.com

How to determine Malware.AI.3907154794?


File Info:

crc32: 4315D009
md5: e1640629f991590e4bbf64161c89e652
name: E1640629F991590E4BBF64161C89E652.mlw
sha1: 50cd54460a2fd576079a2a2c43d93530b1e8f725
sha256: dcc9f96f63e4e420222525da85fbcb42c1bfe6ab8ac0ec5eecb4c15fa34e724a
sha512: d432e32f46af79098f4984d46b13b46849e792d6d8f723e78cac993034aadf135d2614e3dfcb921ee46450d17537858c62e8428c059b8216a646f2ec47bbca7b
ssdeep: 1536:EmJ1jMYDwQPvUnBdUKFNg+ayaQErRaUfrjRHLVI/ovdYE4TF7Y1ZR11N+NH1uz9:NoYDw0UAKFNg+CQqRfDjRHLVI/ov+da
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
InternalName:
FileVersion: 0, 0, 0, 58
CompanyName:
PrivateBuild:
LegalTrademarks:
Comments: 2/6/02
ProductName:
SpecialBuild:
ProductVersion: 0, 0, 0, 58
FileDescription:
OriginalFilename:
Translation: 0x0409 0x04b0

Malware.AI.3907154794 also known as:

K7AntiVirusDialer ( 002598831 )
Elasticmalicious (high confidence)
DrWebDialer.Premium.260
CynetMalicious (score: 100)
ALYacBackdoor.Bot.101685
CylanceUnsafe
ZillyaDialer.NLV.Win32.20
SangforTrojan.Win32.Save.a
AlibabaTrojan:Win32/Dialer.b0e07f45
K7GWDialer ( 002598831 )
Cybereasonmalicious.9f9915
CyrenW32/Dialer.D.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Dialer.NLV
ZonerProbably Heur.ExeHeaderP
APEXMalicious
AvastWin32:Dh-A [Heur]
Kasperskynot-a-virus:Dialer.Win32.Small.gen
BitDefenderBackdoor.Bot.101685
NANO-AntivirusTrojan.Win32.Premium.finxnv
MicroWorld-eScanBackdoor.Bot.101685
TencentWin32.Trojan.Dialer.Ahxs
Ad-AwareBackdoor.Bot.101685
ComodoApplicUnsaf.Win32.Dialer.Small.ui04@1xifaz
BitDefenderThetaGen:NN.ZexaF.34170.fm0fayLLb2li
VIPREPorn-Dialer.Win32.Generic (fs)
TrendMicroDIAL_RAS.IH
McAfee-GW-EditionDialer-197
FireEyeGeneric.mg.e1640629f991590e
EmsisoftBackdoor.Bot.101685 (B)
SentinelOneStatic AI – Malicious PE
JiangminDialer.Small.cl
AviraDIAL/Dialer.Gen2
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataBackdoor.Bot.101685
McAfeeGenericRXAA-AA!E1640629F991
MAXmalware (ai score=100)
VBA32BScope.Backdoor.Dluca
MalwarebytesMalware.AI.3907154794
PandaDialer.Gen
TrendMicro-HouseCallDIAL_RAS.IH
RisingTrojan.Dialer.Win32.Agent.yhw (CLASSIC)
YandexTrojan.GenAsa!IPES8l2JkPk
IkarusTrojan-Downloader.Win32.Dluca
FortinetW32/Dluca.AH!tr
AVGWin32:Dh-A [Heur]
Paloaltogeneric.ml

How to remove Malware.AI.3907154794?

Malware.AI.3907154794 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment