Malware

Malware.AI.3996552070 removal

Malware Removal

The Malware.AI.3996552070 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3996552070 virus can do?

  • Injection (inter-process)
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Reads data out of its own binary image
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • A potential decoy document was displayed to the user
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

www.cheathappens.com

How to determine Malware.AI.3996552070?


File Info:

crc32: BC12839B
md5: 161515fadf2167aaca6656ff596cbdbb
name: 161515FADF2167AACA6656FF596CBDBB.mlw
sha1: 8c4f0a3308fdf858a6da0affa8381a53e2210172
sha256: dcbbd1c5831b3ed6563697951f4200be1deedbc24db0b27eec6b8498d14cef54
sha512: 0a88ba18de7791c8698a96a520304b2d649a8087ff7ebaefb2d0b232f2c8661658b3132c70e0756b61a4f65ab0e3b281e07aa6d02479f1a032739776f1fd80c4
ssdeep: 24576:52hvyZibgFW1US2H9akI6zGVq256AGzc2wTQ5/2xxaRqNJBV1Ls2wBPRBJBV1Ls7:uG7amO56fyT8OxxaRGJBV1Ls2wBHJBVu
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: 1.0.0.9
FileVersion: 1.0000
ProductName: Atelier Firis
ProductVersion: 55080
CompanyName: Cheathappens
Translation: 0x0000 0x04b0

Malware.AI.3996552070 also known as:

BkavW32.AIDetectVM.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Generic.21960339
FireEyeGeneric.mg.161515fadf2167aa
ALYacTrojan.Generic.21960339
MalwarebytesMalware.AI.3996552070
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusUnwanted-Program ( 0050a84f1 )
BitDefenderTrojan.Generic.21960339
K7GWUnwanted-Program ( 0050a84f1 )
Cybereasonmalicious.adf216
BitDefenderThetaGen:NN.ZexaF.34804.Dv1@aeySnQni
CyrenW32/S-a37062cf!Eldorado
SymantecML.Attribute.HighConfidence
AvastWin32:Malware-gen
ClamAVWin.Malware.Gamehack-6814929-0
NANO-AntivirusTrojan.Win32.GameHack.escdps
AegisLabTrojan.Win32.Generic.4!c
RisingTrojan.MalCert!1.BB3C (CLASSIC)
Ad-AwareTrojan.Generic.21960339
SophosCheathappens (PUA)
ComodoTrojWare.Win32.GameHack.DC@5qhv2d
McAfee-GW-EditionBehavesLike.Win32.Generic.th
SentinelOneStatic AI – Malicious PE
EmsisoftTrojan.Generic.21960339 (B)
IkarusPUA.MSIL.Dotbundle
GDataWin32.Application.GameHack.L
MaxSecureTrojan.Malware.300983.susgen
Antiy-AVLTrojan/Win32.TSGeneric
ArcabitTrojan.Generic.D14F1693
SUPERAntiSpywareHack.Tool/Gen-GameHack
CynetMalicious (score: 100)
Acronissuspicious
McAfeeBackDoor-EIO
MAXmalware (ai score=81)
VBA32Trojan.MSIL.Inject
CylanceUnsafe
PandaTrj/Genetic.gen
APEXMalicious
ESET-NOD32a variant of Win32/GameHack.BFJ potentially unsafe
YandexTrojan.GenAsa!TrbYwsvDGF8
eGambitUnsafe.AI_Score_99%
FortinetW32/Siggen.ACEA!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Malware.AI.3996552070?

Malware.AI.3996552070 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment