Malware

Malware.AI.4237994643 removal guide

Malware Removal

The Malware.AI.4237994643 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4237994643 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Uses Windows utilities for basic functionality
  • Sniffs keystrokes
  • Checks for the presence of known windows from debuggers and forensic tools
  • Installs itself for autorun at Windows startup
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
itachi.homeftp.net

How to determine Malware.AI.4237994643?


File Info:

crc32: 169C7719
md5: 240751b1e38a014bf8979bc287b983aa
name: 240751B1E38A014BF8979BC287B983AA.mlw
sha1: cdc763e2330b7a1f848931d91dc6912655313e11
sha256: 866e2d377d9e74cf5ab44f029577149d3b7ba1ec34010ce418cc18ee829845f2
sha512: fd7520e77f3437191c914d21a1625c335939ad4a26ec7aaef7c6d5aab3db310d555fd63f972524fc68ff10ca46b6ea59239c5f4af50d556a9ce005a27994231d
ssdeep: 24576:Gx/jy2eMnpVM9N0TQSp0AXpBe8/1vBsbg3WAGQ7F6aEnnFrjBzLllhsWH8:Gx4MnpVMP617XpBeIsCWlmEnnFP4Wc
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Malware.AI.4237994643 also known as:

K7AntiVirusUnwanted-Program ( 004d38111 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader11.18111
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Agen
ALYacDropped:Application.Agent.GWI
CylanceUnsafe
SangforTrojan.MSIL.Disfa.khey
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaBackdoor:Win32/Disfa.63d1284d
K7GWUnwanted-Program ( 004d38111 )
Cybereasonmalicious.1e38a0
ESET-NOD32multiple detections
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Virus.Virut-6723776-0
KasperskyTrojan.MSIL.Disfa.khey
BitDefenderDropped:Application.Agent.GWI
NANO-AntivirusTrojan.Win32.AD.eienqm
MicroWorld-eScanDropped:Application.Agent.GWI
TencentMsil.Trojan.Disfa.Hnkx
Ad-AwareDropped:Application.Agent.GWI
SophosGeneric Reputation PUA (PUA)
ComodoApplicUnwnt@#1mc930v9lqf6y
F-SecureHeuristic.HEUR/AGEN.1112171
BitDefenderThetaGen:NN.ZelphiF.34294.MmKfa4GlxamQ
VIPRETrojan.Win32.Generic!BT
TrendMicroHKTL_PATCHER
McAfee-GW-EditionRDN/Generic BackDoor
FireEyeGeneric.mg.240751b1e38a014b
EmsisoftDropped:Application.Agent.GWI (B)
SentinelOneStatic AI – Suspicious PE
AviraHEUR/AGEN.1112171
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Win32.BTSGeneric
KingsoftWin32.Troj.Gener.(kcloud)
MicrosoftHackTool:Win32/Patch
ArcabitApplication.Agent.GWI
GDataDropped:Application.Agent.GWI
AhnLab-V3Trojan/Win32.Remoteaccess.C2561251
McAfeeArtemis!240751B1E38A
MAXmalware (ai score=76)
VBA32Trojan.Occamy
MalwarebytesMalware.AI.4237994643
PandaTrj/CI.A
TrendMicro-HouseCallHKTL_PATCHER
YandexTrojan.KillProc!MA+7Jtfux1w
IkarusHackTool.Patch.Adobe
FortinetRiskware/Patcher
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Malware.AI.4237994643?

Malware.AI.4237994643 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment