Malware

Malware.AI.768145635 removal tips

Malware Removal

The Malware.AI.768145635 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.768145635 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Russian
  • Anomalous binary characteristics

How to determine Malware.AI.768145635?


File Info:

crc32: A88E97D7
md5: b9859c130d01e015a80d76154325568a
name: B9859C130D01E015A80D76154325568A.mlw
sha1: ed3287fa58686173b33abb9275011db9746b555c
sha256: 23a312b36f2079f275610e90ebfb77b5fd7d3903866464f836f16f756aea6776
sha512: 6535b2dd0ac4c38e68d94e09e3878108efef2964e4a2ae8f63dd1fc32f3dba99cde68bc62505e91a6005bae86038b007aa0a025ebd7b7f4ac2b06a0eb9ea84da
ssdeep: 24576:w2cFjdGHWHot5m2tCIgwb7xiiCBONCvy+H6Os+hl3GuE:UdZHotw2tCIV7xiiCBTy+aSfy
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2008 ArcaBit
InternalName: putinhuy
FileVersion: 1.4.5.2
ProductVersion: 9.9.5.6
CompanyName: NAVITELxae
Translation: 0x0409 0x04b0

Malware.AI.768145635 also known as:

K7AntiVirusTrojan ( 00540ed61 )
LionicTrojan.Win32.Regsup.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Inject3.11598
ALYacTrojan.Ranapama.ABK
CylanceUnsafe
ZillyaDownloader.Nymaim.Win32.5248
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojanDownloader:Win32/Regsup.4909acfb
K7GWTrojan ( 00540ed61 )
Cybereasonmalicious.30d01e
CyrenW32/Internet-Trojan-patched-bas
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.Nymaim.BA
APEXMalicious
AvastWin32:Kryptik-PRG [Trj]
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Regsup.badk
BitDefenderTrojan.Ranapama.ABK
NANO-AntivirusTrojan.Win32.Regsup.fjgzfa
MicroWorld-eScanTrojan.Ranapama.ABK
TencentMalware.Win32.Gencirc.10b12211
Ad-AwareTrojan.Ranapama.ABK
SophosML/PE-A
ComodoTrojWare.Win32.Regsup.NR@7wfx07
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Downloader.th
FireEyeGeneric.mg.b9859c130d01e015
EmsisoftTrojan.Ranapama.ABK (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Regsup.bac
AviraHEUR/AGEN.1117673
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.2889747
MicrosoftPWS:Win32/Zbot!ml
GDataTrojan.Ranapama.ABK
TACHYONTrojan/W64.Agent.1048576
AhnLab-V3Trojan/Win32.Agent.R240800
Acronissuspicious
McAfeeGenericRXGN-AD!B9859C130D01
MAXmalware (ai score=87)
VBA32BScope.Trojan.Skeeyah
MalwarebytesMalware.AI.768145635
PandaTrj/GdSda.A
RisingDownloader.Nymaim!1.AA57 (CLASSIC)
YandexTrojan.Regsup!nzRoA26036c
IkarusTrojan-Downloader.Win32.Nymaim
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GMQK!tr
AVGWin32:Kryptik-PRG [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.768145635?

Malware.AI.768145635 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment