Malware

About “Malware.AI.3929566145” infection

Malware Removal

The Malware.AI.3929566145 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3929566145 virus can do?

  • Presents an Authenticode digital signature
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Attempts to modify proxy settings

Related domains:

down.21195.com

How to determine Malware.AI.3929566145?


File Info:

crc32: 7EAD15CC
md5: 508ea315e85e7ac5dbd711f058e707b6
name: 508EA315E85E7AC5DBD711F058E707B6.mlw
sha1: ef0cc1dfa65f0411c045394a1f8559e1a82080d3
sha256: 0d474d6f8f53981bc68a3eab5fd111774cba89aee55512a9d082919b26b9c11c
sha512: 07a9fb326a949924baac6d4518af0585344bee93a90b6054f148e95bc4a431b065296098ee10feb1e451ee0f772dc0eccae9f9326e86b944c99539afbc578845
ssdeep: 6144:vw4UHvuzExt4UhatU2E6frWq90QH3s1I6DDUOq6jZDFc0zWF1JFPWnxQ6v8+rG:IDH2zkWUizvfrWw04c1I6ZbFDpzOyx7O
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Malware.AI.3929566145 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 00549d461 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader30.29251
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Skeeyah.8165
ALYacGen:Variant.Strictor.56444
CylanceUnsafe
ZillyaDownloader.FlyStudio.Win32.3000
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
K7GWTrojan ( 00549d461 )
Cybereasonmalicious.5e85e7
CyrenW32/Heuristic-162!Eldorado
SymantecInfostealer.Bankeiya
ESET-NOD32a variant of Win32/TrojanDownloader.FlyStudio.BT
APEXMalicious
AvastWin32:Agent-ATRM [Trj]
ClamAVWin.Trojan.Agent-1200738
KasperskyTrojan-Downloader.Win32.Agent.xxyphb
BitDefenderGen:Variant.Strictor.56444
NANO-AntivirusTrojan.Win32.Crypted.dejsod
MicroWorld-eScanGen:Variant.Strictor.56444
TencentMalware.Win32.Gencirc.10b0c650
Ad-AwareGen:Variant.Strictor.56444
ComodoTrojWare.Win32.Agent.OSCF@5rs7jr
BitDefenderThetaGen:NN.ZexaF.34170.wmHfauy1@3fb
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
FireEyeGeneric.mg.508ea315e85e7ac5
EmsisoftGen:Variant.Strictor.56444 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Generic.fewn
WebrootW32.Malware.Heur
AviraHEUR/AGEN.1125448
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.BB8213
MicrosoftTrojanDropper:Win32/Dinwod
GridinsoftTrojan.Win32.Downloader.oa!s2
SUPERAntiSpywareTrojan.Agent/Gen-Downloader
GDataGen:Variant.Strictor.56444
AhnLab-V3Spyware/Win32.Bankeiya.R110891
Acronissuspicious
McAfeeGenericRXAA-AA!508EA315E85E
MAXmalware (ai score=88)
VBA32Trojan-Downloader.EIC.7121
MalwarebytesMalware.AI.3929566145
PandaTrj/Genetic.gen
IkarusBackdoor.Win32.Hupigon
FortinetW32/CoinMiner.BELF!tr
AVGWin32:Agent-ATRM [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.3929566145?

Malware.AI.3929566145 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment