Malware

About “Malware.AI.3948146668” infection

Malware Removal

The Malware.AI.3948146668 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3948146668 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file

Related domains:

z.whorecord.xyz
a.tomx.xyz
UeR.ReiyKiQ.ir
ai.0x1725.site

How to determine Malware.AI.3948146668?


File Info:

crc32: 6C3F02A8
md5: 18658ec193bd0bcbb840ba86650ad2e8
name: 18658EC193BD0BCBB840BA86650AD2E8.mlw
sha1: 0c5f6c919bd0565e113ea5aea5a89e91d9a492cb
sha256: af6080bf195eaaf4e117f4bdde99eda6d8b470cfd57d0533067e2a37a8e3861c
sha512: dbb6e22e979d2da382db3a4181fd46fc890009066716cff0251c90c90ff3f4b74525b1cffa4f42eb1e061783ec27e79374df6bf0e501978f165f6bc7b3155402
ssdeep: 3072:4tWIpF9TWHPCUtS9DJ0hhV85ftD2RGPZ7ES7rzS:2WIpfqHPC99DJ0PVa1jxwS7n
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Malware.AI.3948146668 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader25.10311
MicroWorld-eScanGen:Variant.Graftor.715575
CAT-QuickHealTrojan.GenericRI.S15381142
ALYacGen:Variant.Graftor.715575
CylanceUnsafe
ZillyaTrojan.Miancha.Win32.2931
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Miancha.38ee04eb
Cybereasonmalicious.193bd0
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.BlackMoon.A potentially unwanted
APEXMalicious
AvastFileRepMalware
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Miancha.iua
BitDefenderGen:Variant.Graftor.715575
NANO-AntivirusTrojan.Win32.Miancha.hoswxk
TencentWin32.Trojan.Miancha.Dygr
Ad-AwareGen:Variant.Graftor.715575
SophosMal/Generic-R
ComodoPacked.Win32.MUPX.Gen@24tbus
BitDefenderThetaGen:NN.ZexaF.34236.imGfaqbbN4d
VIPRETrojan.Win32.Generic!BT
TrendMicroBackdoor.Win32.ZEGOST.SMS
McAfee-GW-EditionBehavesLike.Win32.Dropper.cc
FireEyeGeneric.mg.18658ec193bd0bcb
EmsisoftGen:Variant.Graftor.715575 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Miancha.hl
WebrootW32.Malware.Gen
AviraTR/ATRAPS.Gen
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.30C2D86
KingsoftWin32.Troj.Miancha.i.(kcloud)
MicrosoftTrojan:Win32/Eqtonex!rfn
ZoneAlarmTrojan.Win32.Miancha.iua
GDataGen:Variant.Graftor.715575
AhnLab-V3Malware/Win32.Backdoor.C4017092
McAfeeGenericRXAA-AA!18658EC193BD
MAXmalware (ai score=88)
VBA32BScope.TrojanPSW.Gamania
MalwarebytesMalware.AI.3948146668
PandaTrj/CI.A
TrendMicro-HouseCallBackdoor.Win32.ZEGOST.SMS
RisingBackdoor.Farfli!1.CEA2 (CLASSIC)
YandexTrojan.GenAsa!kqZD5N2GyFc
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.ESFJ!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Malware.AI.3948146668?

Malware.AI.3948146668 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment