Malware

Malware.AI.625107557 removal guide

Malware Removal

The Malware.AI.625107557 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.625107557 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Attempts to connect to a dead IP:Port (7 unique times)
  • At least one IP Address, Domain, or File Name was found in a crypto call
  • A process created a hidden window
  • Performs some HTTP requests
  • Uses Windows utilities for basic functionality
  • Attempts to create or modify system certificates
  • Uses suspicious command line tools or Windows utilities

Related domains:

www.torproject.org
apps.identrust.com
dist.torproject.org

How to determine Malware.AI.625107557?


File Info:

crc32: 0D611A73
md5: d4f080fb543376245c9a00d642389f99
name: D4F080FB543376245C9A00D642389F99.mlw
sha1: 24c9a8e125a9eea88ae7c98de19372e23003d4e9
sha256: ad034b68c693bb490a31b1f15ae466052581c967e7966ff424f920ef0653971b
sha512: dce75c29e968e3f9e5e1588cf17607362edebe29dc6ada1a4d4323fb0602bb36b984536467bad807bac35732ac6ffd7fc45c5d5626e0192f20f1bf20bfa758ad
ssdeep: 1536:/GEXhhdeaC6XZQd8OXZVcoDC/9URR5TgsJSs9b26iBt5q4WHgE5PSCKcl:/xRh/ZQ7ZrDC/9oge9b2F5E5PShY
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: softonic.com
Assembly Version: 1.4.8.9
InternalName: Main.exe
FileVersion: 1.4.8.9
CompanyName:
LegalTrademarks:
Comments:
ProductName:
ProductVersion: 1.4.8.9
FileDescription: softonic.com agent
OriginalFilename: Main.exe

Malware.AI.625107557 also known as:

K7AntiVirusTrojan ( 0053d3441 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader27.13440
CynetMalicious (score: 100)
ALYacTrojan.Ransom.KrakenCryptor
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.8720
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:MSIL/Kraken.86af7b48
K7GWTrojan ( 0053d3441 )
Cybereasonmalicious.b54337
SymantecRansom.Kraken!gen1
ESET-NOD32a variant of MSIL/Filecoder.PI
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
KasperskyHEUR:Trojan.MSIL.TorJok.gen
BitDefenderGeneric.Ransom.KrakenB.8D7E8068
NANO-AntivirusTrojan.Win32.Filecoder.fjtzor
MicroWorld-eScanGeneric.Ransom.KrakenB.8D7E8068
TencentMsil.Trojan.Torjok.Wtnc
Ad-AwareGeneric.Ransom.KrakenB.8D7E8068
SophosGeneric ML PUA (PUA)
ComodoMalware@#z58suicc895u
BitDefenderThetaGen:NN.ZemsilF.34758.hm0@aqxfCA
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom.MSIL.KRAKEN.SM
McAfee-GW-EditionGenericRXGN-CD!D4F080FB5433
FireEyeGeneric.mg.d4f080fb54337624
EmsisoftTrojan.Ransom.Kraken (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.MSIL.kqoo
AviraTR/Ransom.fhbwk
eGambitUnsafe.AI_Score_64%
MicrosoftRansom:MSIL/Kraken
AegisLabTrojan.MSIL.TorJok.4!c
GDataGeneric.Ransom.KrakenB.8D7E8068
AhnLab-V3Trojan/Win32.Agent.C2755621
McAfeeGenericRXGN-CD!D4F080FB5433
MAXmalware (ai score=100)
VBA32TScope.Trojan.MSIL
MalwarebytesMalware.AI.625107557
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom.MSIL.KRAKEN.SM
YandexTrojan.TorJok!ieYzyhpmLr8
IkarusTrojan-Ransom.FileCrypter
MaxSecureTrojan.Malware.73823965.susgen
FortinetMSIL/Filecoder.PI!tr.ransom
AVGWin32:RansomX-gen [Ransom]
Paloaltogeneric.ml

How to remove Malware.AI.625107557?

Malware.AI.625107557 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment