Malware

Malware.AI.4080546889 (file analysis)

Malware Removal

The Malware.AI.4080546889 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4080546889 virus can do?

  • Detected script timer window indicative of sleep style evasion
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs
  • Attempts to interact with an Alternate Data Stream (ADS)

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.4080546889?


File Info:

crc32: F5543B91
md5: 89a14d6981669721e1fb31d902d651b9
name: 89A14D6981669721E1FB31D902D651B9.mlw
sha1: 8916119a63ac67daabcb6a537ef211617e2460f2
sha256: cdc2570534ee8b47c95015706643d81047e9f0fd4e1505ff6c251859dba34b1b
sha512: 3ec3ac87ae55ab680f79439d3112ce8fc0326672e274b3c01fa643d6d3acbf04672f23fb55b2e66ff1c172c6b4059dbd0377b3a7982e4df397657b9b0c885a3d
ssdeep: 12288:jQnk3GDYKGcblTFZ8gT6jQbT+ujNTQk+p6TSgExpQJxFKqBpOKmZakq99H9O:1AOcZBZNTU+T+uJTQx6TfuOHOTakq9LO
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.4080546889 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.36426954
FireEyeGeneric.mg.89a14d6981669721
ALYacTrojan.Agent.Wacatac
CylanceUnsafe
AegisLabTrojan.Win32.Uztuby.4!c
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00569e9c1 )
BitDefenderTrojan.GenericKD.36426954
K7GWTrojan ( 00569e9c1 )
Cybereasonmalicious.981669
CyrenW32/Downloader.UK.gen!Eldorado
SymantecTrojan.Gen.MBT
APEXMalicious
KasperskyBackdoor.MSIL.LightStone.bqz
AlibabaTrojan:BAT/Runner.933663e7
AvastWin32:Malware-gen
Ad-AwareTrojan.GenericKD.36426954
EmsisoftTrojan.GenericKD.36426954 (B)
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
SophosMal/Generic-R + Mal/RarMal-R
IkarusTrojan.Rasftuby
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftTrojan:Win32/Ymacco.AACD
ArcabitTrojan.Generic.D22BD4CA
ZoneAlarmBackdoor.MSIL.LightStone.bqz
GDataTrojan.GenericKD.36426954
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R368701
McAfeeArtemis!89A14D698166
MalwarebytesMalware.AI.4080546889
ESET-NOD32BAT/Runner.EG
TrendMicro-HouseCallTROJ_GEN.R002H0CC121
MAXmalware (ai score=80)
FortinetW32/Uztuby.17!tr
AVGWin32:Malware-gen
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_80% (W)
Qihoo-360Win32/Backdoor.Uztuby.HwYDnzsA

How to remove Malware.AI.4080546889?

Malware.AI.4080546889 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment