Malware

About “Malware.AI.3925482512” infection

Malware Removal

The Malware.AI.3925482512 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3925482512 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

tio9ew.zapto.org

How to determine Malware.AI.3925482512?


File Info:

crc32: 021A146C
md5: 390cb955e3376220114add3e0205f28b
name: 390CB955E3376220114ADD3E0205F28B.mlw
sha1: e13e7fb0c34a1efb40591acbff87b91eeac737a0
sha256: 65a3eb1e0691ae65c31c8b328f281fe27337b8f3c9924463c3314a5f879dff38
sha512: 98b61af2fc796efa0b58ce795ea12f9a565065f02d262cb00464053830708eb29475bba8d237236a0b06188a42369aa868daec76b8d69cb166f5ac8ca5bcc8ec
ssdeep: 3072:MgI6ggD6dRXfq+JBZ87K02vdCfEgl9Ep6qxPIggSFLPwe85qxVGLUv:MgI6ggeHxBZL02vIMYEYqKggvi7v
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: (C) 360.cn All Rights Reserved.
InternalName: LiveUpdate360.exe
FileVersion: 1, 3, 0, 1088
CompanyName: 360.cn
ProductName: 360 x5347x7d1ax7ba1x7406
ProductVersion: 1, 3, 0, 1088
FileDescription: 360 x5347x7d1ax7ba1x7406
OriginalFilename: LiveUpdate360.exe
Translation: 0x0404 0x04b0

Malware.AI.3925482512 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Click2.13165
ClamAVWin.Ransomware.Aicat-9862601-0
ALYacGen:Heur.Mint.Zard.45
CylanceUnsafe
ZillyaWorm.WBNA.Win32.384301
CrowdStrikewin/malicious_confidence_80% (D)
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/ServStart.MF
ZonerProbably Heur.ExeHeaderH
APEXMalicious
AvastWin32:Trojan-gen
CynetMalicious (score: 100)
KasperskyTrojan-Ransom.Win32.PornoAsset.detl
BitDefenderGen:Heur.Mint.Zard.45
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanGen:Heur.Mint.Zard.45
TencentWin32.Trojan.Pornoasset.Ligy
Ad-AwareGen:Heur.Mint.Zard.45
SophosML/PE-A + Troj/Zegost-U
ComodoMalware@#1v5fedm82gcz2
BitDefenderThetaGen:NN.ZexaF.34142.mu1@aC1ikmbb
VIPRETrojan-Dropper.Win32.Resdro.b (v) (not malicious)
McAfee-GW-EditionBehavesLike.Win32.Fujacks.cc
FireEyeGeneric.mg.390cb955e3376220
EmsisoftGen:Heur.Mint.Zard.45 (B)
WebrootW32.Malware.Heur
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.21371E
MicrosoftPWS:Win32/Zbot!ml
ZoneAlarmTrojan-Ransom.Win32.PornoAsset.detl
GDataGen:Heur.Mint.Zard.45
Acronissuspicious
McAfeeArtemis!390CB955E337
MAXmalware (ai score=81)
VBA32BScope.Trojan.ServStart
MalwarebytesMalware.AI.3925482512
PandaGeneric Malware
YandexTrojan.XPACK!wnHszbfvN0U
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Filecoder.FV!tr.ransom
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Malware.AI.3925482512?

Malware.AI.3925482512 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment