Malware

Should I remove “Malware.AI.1268432900”?

Malware Removal

The Malware.AI.1268432900 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1268432900 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.1268432900?


File Info:

crc32: 300D2D65
md5: a97302b9801bafd7c55e188f5ccf4f9b
name: A97302B9801BAFD7C55E188F5CCF4F9B.mlw
sha1: fa71bd2139b2fa85f4f7862df471c2c27e1f4d95
sha256: 2050741f6f74650725f826469e436af66c5518011252825d5c59bb3d2c946f6f
sha512: 7fe8f30e012f62515fd078d4e411a6e071e187c58cf88e5b95f36a969fe9c725f1d7db6d82accf1b37ec596aae84f863c146d247b52588631ec6c78efaf3bf54
ssdeep: 6144:IgjqGmKH6wcvfRCxeFdsI2KsCYq68XX2FSUd+h08bRPk05tv1WBZgXS:IgDHaRm0udd8Oqa8tk0zvsBZgC
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: EMEFF.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: EMEFF.exe

Malware.AI.1268432900 also known as:

K7AntiVirusTrojan ( 00511eff1 )
LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealTrojan.MsilFC.S19433345
ALYacGen:Variant.Razy.201623
CylanceUnsafe
ZillyaTrojan.Agent.Win32.807215
SangforTrojan.Win32.Kryptik.8
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:MSIL/Kryptik.b4d2c375
K7GWTrojan ( 00511eff1 )
Cybereasonmalicious.9801ba
CyrenW32/Ransom.AY.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.JYK
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.MSIL.Generic
BitDefenderGen:Variant.Razy.201623
NANO-AntivirusTrojan.Win32.Agent.erbkvk
MicroWorld-eScanGen:Variant.Razy.201623
TencentMsil.Trojan.Agent.Lnnv
Ad-AwareGen:Variant.Razy.201623
SophosMal/Generic-S + Mal/MSIL-TH
ComodoMalware@#uouubwpmd9ny
BitDefenderThetaGen:NN.ZemsilF.34294.ym0@aqBLm8p
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
FireEyeGeneric.mg.a97302b9801bafd7
EmsisoftGen:Variant.Razy.201623 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1133819
Antiy-AVLTrojan/Generic.ASMalwS.211C084
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Razy.201623
Acronissuspicious
McAfeeTrojan-FNMK!A97302B9801B
MAXmalware (ai score=99)
VBA32TScope.Trojan.MSIL
MalwarebytesMalware.AI.1268432900
PandaTrj/GdSda.A
YandexTrojan.Agent!kJXkn8nm/Mo
IkarusTrojan.MSIL.Crypt
FortinetMSIL/Kryptik.JYK!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Malware.AI.1268432900?

Malware.AI.1268432900 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment