Malware

About “Malware.AI.624174604” infection

Malware Removal

The Malware.AI.624174604 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.624174604 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Attempts to create or modify system certificates

Related domains:

z.whorecord.xyz
pastebin.com
a.tomx.xyz

How to determine Malware.AI.624174604?


File Info:

crc32: 2BBD6DFF
md5: 3bc5af71009fea81572e73b44a9b870c
name: 3BC5AF71009FEA81572E73B44A9B870C.mlw
sha1: 9b8fee17bf7e8f52390fe40c58c6fb2241a073bb
sha256: 24f1edd2ef520e31ebee8808bc17817254b532bf9ef17131e97c4a4c401f5523
sha512: 8efdfcbba2a829530db129a07bc713b8ae0d070d471846a0cee0b57c36ed30a5da00d7284f1211a51674b60566274c33fbfb959c76ee0d44e9dfe1524634d7a6
ssdeep: 6144:lahRefCig+MHU/BaLHQtfFoqOwWIK0VHSEpsLW6I+Fp2GhNMUlAmTj5Le:+Re5nMHU/0EtFVOHI7pSEmHIEp2iN/j
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2018 eyfvqcnosrczcjqrusuvbjxjstlyraxiewbqoki
Assembly Version: 1.0.0.0
InternalName: eyfvqcnosrczcjqrusuvbjxjstlyraxiewbqoki.exe
FileVersion: 1.0.0.0
CompanyName: eyfvqcnosrczcjqrusuvbjxjstlyraxiewbqoki
LegalTrademarks: eyfvqcnosrczcjqrusuvbjxjstlyraxiewbqoki
Comments: eyfvqcnosrczcjqrusuvbjxjstlyraxiewbqoki
ProductName: eyfvqcnosrczcjqrusuvbjxjstlyraxiewbqoki
ProductVersion: 1.0.0.0
FileDescription: eyfvqcnosrczcjqrusuvbjxjstlyraxiewbqoki
OriginalFilename: eyfvqcnosrczcjqrusuvbjxjstlyraxiewbqoki.exe

Malware.AI.624174604 also known as:

K7AntiVirusTrojan ( 004d75241 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownloaderNET.91
CynetMalicious (score: 99)
ALYacGen:Trojan.Heur.KT.2.Dq0@a8xE5Cg
CylanceUnsafe
ZillyaTrojan.Generic.Win32.1632475
SangforTrojan.Win32.Generic.ky
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:MSIL/Infostealer.f7061fbb
K7GWTrojan ( 004d75241 )
Cybereasonmalicious.1009fe
CyrenW32/MSIL_Agent.IX.gen!Eldorado
SymantecInfostealer.Limitail
ESET-NOD32a variant of MSIL/TrojanDropper.Agent.AQJ
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Zusy-7619646-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Trojan.Heur.KT.2.Dq0@a8xE5Cg
NANO-AntivirusTrojan.Win32.Win32.dciakd
ViRobotTrojan.Win32.Z.Agent.483840.CK
MicroWorld-eScanGen:Trojan.Heur.KT.2.Dq0@a8xE5Cg
TencentWin32.Trojan.Generic.Lnon
Ad-AwareGen:Trojan.Heur.KT.2.Dq0@a8xE5Cg
SophosMal/Generic-S
ComodoMalware@#2zzlktpu4l3vv
BitDefenderThetaAI:Packer.2857CCD920
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PKD21
McAfee-GW-EditionGeneric.dsu
FireEyeGen:Trojan.Heur.KT.2.Dq0@a8xE5Cg
EmsisoftGen:Trojan.Heur.KT.2.Dq0@a8xE5Cg (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.ccuyc
AviraHEUR/AGEN.1111845
Antiy-AVLTrojan/Generic.ASMalwS.260D354
MicrosoftBackdoor:Win32/Bladabindi!ml
ArcabitTrojan.Heur.KT.2.E750D5
GDataGen:Trojan.Heur.KT.2.Dq0@a8xE5Cg
McAfeeGeneric.dsu
MAXmalware (ai score=99)
MalwarebytesMalware.AI.624174604
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0PKD21
IkarusTrojan.MSIL.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.AQJ!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Malware.AI.624174604?

Malware.AI.624174604 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment