Malware

Malware.AI.79786286 removal

Malware Removal

The Malware.AI.79786286 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.79786286 virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Executed a process and injected code into it, probably while unpacking
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.79786286?


File Info:

crc32: 4DA1B50A
md5: 05373ebd068a2093b4936454811273f7
name: 05373EBD068A2093B4936454811273F7.mlw
sha1: a8a2be7b92843ed8fce325c95b21c36295d6e8bd
sha256: d035b982286aa7aef396c885de391955f66375b22716b526ef0b6ac2dd342d63
sha512: dbe5d84cdf7dd30a7218337c7cc5afae34f5a3aac5ca7c04d3e3177ff059a0fc8dbcc76ccfb502bc97f253205a0702a7ccdfcf0372a8fa088e84bcd25b4c8c64
ssdeep: 12288:nOv5jKhsfoPA+yeVKUCUxP4C902bdRtJJPistpzEpAyTFXtTwrnc8:nq5TfcdHj4fmb5PzUAm2c8
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

Translation: 0x0809 0x04b0

Malware.AI.79786286 also known as:

BkavW32.AIDetectVM.malware1
MicroWorld-eScanAIT:Trojan.GenericTKA.48
FireEyeGeneric.mg.05373ebd068a2093
CAT-QuickHealTrojanPWS.AutoIT.Dclog.S
Qihoo-360Generic/Trojan.Script.ed4
ALYacAIT:Trojan.GenericTKA.48
CylanceUnsafe
VIPRETrojan.Win32.Generic.pak!cobra
AegisLabTrojan.Script.Generic.4!c
SangforMalware
CrowdStrikewin/malicious_confidence_70% (D)
BitDefenderAIT:Trojan.GenericTKA.48
K7GWTrojan ( 004bd4ff1 )
K7AntiVirusTrojan ( 004bd4ff1 )
BaiduAutoIt.Trojan.Injector.d
CyrenW32/AutoIt.QE.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastScript:SNH-gen [Trj]
ClamAVWin.Malware.Generictka-6961386-0
KasperskyHEUR:Trojan.Script.Generic
AlibabaTrojan:Win32/Scrarev.9321ed74
NANO-AntivirusTrojan.Win32.Autoit.emcdaa
ViRobotTrojan.Win32.Z.Autoit.663040.A
RisingTrojan.Injector/Autoit!1.C5B5 (CLASSIC)
Ad-AwareAIT:Trojan.GenericTKA.48
SophosMal/Generic-R + Troj/Autoit-BSC
ComodoMalware@#csbgpyvvjbs5
F-SecureHeuristic.HEUR/AGEN.1114569
DrWebTrojan.Nanocore.23
ZillyaTrojan.Injector.Win32.476343
TrendMicroTROJ_GEN.R002C0DAH21
McAfee-GW-EditionBehavesLike.Win32.TrojanAitInject.jc
EmsisoftAIT:Trojan.GenericTKA.48 (B)
AviraHEUR/AGEN.1114569
MicrosoftTrojan:Win32/Scrarev.C
ArcabitAIT:Trojan.GenericTKA.48
ZoneAlarmHEUR:Trojan.Script.Generic
GDataAIT:Trojan.GenericTKA.48 (3x)
CynetMalicious (score: 90)
McAfeeArtemis!05373EBD068A
VBA32Trojan.Nanocore
MalwarebytesMalware.AI.79786286
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Injector.Autoit.BKC
TrendMicro-HouseCallTROJ_GEN.R002C0DAH21
TencentWin32.Trojan.Generic.Dbb
MAXmalware (ai score=84)
eGambitUnsafe.AI_Score_82%
FortinetW32/Autoit.BKC!tr
BitDefenderThetaAI:Packer.6A29D41418
AVGScript:SNH-gen [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.79786286?

Malware.AI.79786286 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment