Malware

Mal/RootKit-A removal

Malware Removal

The Mal/RootKit-A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/RootKit-A virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Mal/RootKit-A?


File Info:

crc32: 6A1EC9AA
md5: e341d6dec0a2c95e38231039b1a22dea
name: tianwangfanghuoqiang.exe
sha1: fbef2338b3e7288e753001fe8387da28063fa31a
sha256: a8a3ac0a4c2ecece11c5a55f42af014724d67d03126b09a1b6bab9a2dea05e38
sha512: f12590f1dbfdfd0376cdc16cc829a1127b481ec42a4fe14e68a9f20a9636d60437569dcbac8b693b6c74db2ed974db039abd31d334976ce8e3ac5a8e53586901
ssdeep: 98304:P8gS0uJRdTa5DjIGk6vf7RTPHnwZCgywZ+iNvcdN+ckVCE23Z/ST:P82koVjIyNjnAMSkv+ciwZ/ST
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x5e7fx5ddex4f17x8fbex5929x7f51x6280x672fx6709x9650x516cx53f8
FileDescription: x5929x7f51x9632x706bx5899x5145x503cx7248
FileVersion: 3.0.0.1015
CompanyName: x5e7fx5ddex4f17x8fbex5929x7f51x6280x672fx6709x9650x516cx53f8

Mal/RootKit-A also known as:

CAT-QuickHealTrojan.Riskware
McAfeeArtemis!E341D6DEC0A2
CylanceUnsafe
CyrenW32/SYStroj.N.gen!Eldorado
SymantecHacktool.Rootkit
Paloaltogeneric.ml
NANO-AntivirusTrojan.Win32.SYStroj.cxpncx
McAfee-GW-EditionArtemis
SophosMal/RootKit-A
F-ProtW32/SYStroj.N.gen!Eldorado
WebrootW32.Trojan.Dynamer
MicrosoftTrojan:Win32/Vigorf.A
MAXmalware (ai score=99)
eGambitUnsafe.AI_Score_99%
FortinetW32/RootKit.A!tr

How to remove Mal/RootKit-A?

Mal/RootKit-A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment