Malware

Malware.AI.473677628 removal tips

Malware Removal

The Malware.AI.473677628 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.473677628 virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Attempts to modify proxy settings
  • Creates a slightly modified copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
huyontop.com

How to determine Malware.AI.473677628?


File Info:

crc32: EB52AD4E
md5: 198937660ff1f6424cbcf610d5a1ebf2
name: 198937660FF1F6424CBCF610D5A1EBF2.mlw
sha1: 27f2dcd8646076c5f1a84f49ffc4970db2e4b9d9
sha256: 1a458bafa319ba2f176d2839c3d35374e9ac2e72b35145c3a15ae57598438fe9
sha512: 34d1fa5714ef994c860a27b908b4491c30486c053643eb61b3325951e2e79e655746c4af616fa6844157344efd70a0b929401c182aa3b9e49e8a244f89da972e
ssdeep: 384:+ITiMVAhzlbNqzW1PRD8+6Cf/Zu3Z5mn/StkF1dHFMsPGujzAEeVlHDuvyDBFvGg:fTBuNqzWbjf/ZWZ5O60MsqdDdDBFvGjM
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.473677628 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan-Downloader ( 004546b61 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader10.8528
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacTrojan.Agent.CJOO
CylanceUnsafe
ZillyaDownloader.Tiny.Win32.4156
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaMalware:Win32/km_28d88.None
K7GWTrojan-Downloader ( 004546b61 )
Cybereasonmalicious.60ff1f
CyrenW32/Downloader.FKQY-3693
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.Tiny.NIV
APEXMalicious
AvastWin32:Downloader-WID [Trj]
ClamAVWin.Malware.Upatre-6765696-0
KasperskyUDS:Trojan-Downloader.Win32.Generic
BitDefenderTrojan.Agent.CJOO
NANO-AntivirusTrojan.Win32.Dwn.dikqpr
ViRobotTrojan.Win32.Agent.35880
MicroWorld-eScanTrojan.Agent.CJOO
TencentMalware.Win32.Gencirc.10ce3d39
Ad-AwareTrojan.Agent.CJOO
SophosML/PE-A + Troj/Upatre-XO
ComodoTrojWare.Win32.TrojanDownloader.Upatre.ACC@56yhj8
BitDefenderThetaGen:NN.ZexaF.34266.emZ@a81Dcfi
VIPRETrojan-Downloader.Win32.Upatre.a (v)
TrendMicroTROJ_UPATRE.SMAZ
McAfee-GW-EditionBehavesLike.Win32.Upatre.lz
FireEyeGeneric.mg.198937660ff1f642
EmsisoftTrojan.Agent.CJOO (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDownloader.Generic.ampd
WebrootW32.Malware.Gen
AviraTR/ATRAPS.Gen
Antiy-AVLTrojan/Generic.ASMalwS.CA65BA
MicrosoftTrojan:Win32/Zbot.DC!MTB
SUPERAntiSpywareTrojan.Agent/Gen-Downloader
ZoneAlarmTrojan-Downloader.Win32.Small.gen
GDataWin32.Trojan.PSE.LEV8LL
AhnLab-V3Trojan/Win32.Zbot.R83549
Acronissuspicious
McAfeeDownloader-FBSK!198937660FF1
MAXmalware (ai score=100)
VBA32Trojan.Downloader
MalwarebytesMalware.AI.473677628
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_UPATRE.SMAZ
RisingDownloader.Waski!1.A489 (CLASSIC)
YandexTrojan.DL.Tiny!nleUX1B/qxo
IkarusTrojan-Downloader.Win32.Tiny
MaxSecureDownloader.Upatre.a
FortinetW32/Tiny.NIV!tr
AVGWin32:Downloader-WID [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.473677628?

Malware.AI.473677628 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment