Malware

Malware.AI.4057931890 malicious file

Malware Removal

The Malware.AI.4057931890 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4057931890 virus can do?

  • Attempts to connect to a dead IP:Port (2 unique times)
  • Creates RWX memory
  • Performs some HTTP requests
  • Unconventionial binary language: Portuguese (Brazil)

Related domains:

z.whorecord.xyz
a.tomx.xyz
www.comocuidar.com.br

How to determine Malware.AI.4057931890?


File Info:

crc32: DF7FCE6E
md5: 996cbb7e85ff26eb458935bd1ba86f34
name: 996CBB7E85FF26EB458935BD1BA86F34.mlw
sha1: cbf0ba039051a106fa3a11176f363a26e2341570
sha256: ddb0b5d7fd14783c4d1e7c8e619a47961e78457c1fb7d038a285cd3543199f4f
sha512: e9db6c728886f39ba78c34ac71216ffa996057e8cd5d4e9229030ec9be32e611ebdffb617cb1c5e9d0abbd3812e1aea83aa804764e4ad6353e93b2177d946958
ssdeep: 49152:ZezPVyW3itFU/ZKlMZgSsSftjH+BfrTjuWthdkB:Ze5yqitmZK/BDTOB
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: if_copy_1927208
FileVersion: 13.9.0.13
ProductVersion: 8.6.0.13
Translation: 0x0416 0x04e4

Malware.AI.4057931890 also known as:

BkavW32.AIDetectVM.malware2
MicroWorld-eScanTrojan.GenericKD.6195570
FireEyeGeneric.mg.996cbb7e85ff26eb
McAfeeGenericR-KXF!996CBB7E85FF
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan-Downloader ( 004cf4b11 )
BitDefenderTrojan.GenericKD.6195570
K7GWTrojan-Downloader ( 004cf4b11 )
Cybereasonmalicious.e85ff2
BitDefenderThetaGen:NN.ZelphiF.34804.nV0@aGsWu8ki
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojanDownloader:Win32/Tiggre.d9f5411d
NANO-AntivirusTrojan.Win32.Banload.euyzkx
Ad-AwareTrojan.GenericKD.6195570
F-SecureHeuristic.HEUR/AGEN.1105259
DrWebTrojan.DownLoader25.55687
ZillyaDownloader.Banload.Win32.84102
McAfee-GW-EditionGenericR-KXF!996CBB7E85FF
EmsisoftTrojan.GenericKD.6195570 (B)
JiangminTrojan.Generic.bmpkl
AviraHEUR/AGEN.1105259
Antiy-AVLTrojan/Win32.AGeneric
MicrosoftTrojan:Win32/Tiggre!rfn
ArcabitTrojan.Generic.D5E8972
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.GenericKD.6195570
CynetMalicious (score: 85)
AhnLab-V3Malware/Win32.Generic.C2212464
VBA32Trojan.Downloader
MAXmalware (ai score=100)
MalwarebytesMalware.AI.4057931890
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/TrojanDownloader.Banload.WLN
RisingDownloader.Banload!8.15B (CLOUD)
YandexTrojan.GenAsa!9c18r3BwhRo
IkarusTrojan-Downloader.Win32.Banload
FortinetW32/Banload.WEL!tr.dldr
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_70% (W)
Qihoo-360Win32/Trojan.9fd

How to remove Malware.AI.4057931890?

Malware.AI.4057931890 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment