Malware

How to remove “Malware.AI.2729152272”?

Malware Removal

The Malware.AI.2729152272 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2729152272 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Arabic (Morocco)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.2729152272?


File Info:

crc32: 4C772934
md5: 379294f76b3249221246422cde45571a
name: 379294F76B3249221246422CDE45571A.mlw
sha1: 365a3756c8b897d4e2834d04be7ba8213c524576
sha256: 1e1c917dba46f33b2878eec6c821a4892305aa9a66b629aa0d7bb853891f9d79
sha512: 62ae9b517b799274c3e2fec999005970a5382532ff9de590c643bf4bfc4c7d363fce898f6e524846a80c1fa7b3029ab0ff40da335e70f944cf2e4b96dcae4e21
ssdeep: 24576:J1GRpn+jss3L0hxpDd2iZ/9qIz3p4yRfSH06qNnWyZO1jcMR8lIqfYi9yNtQCAu:JE7sbk9VHJq1DmYiuFNI+H
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9Dafriettigot maitkag neypgoira
InternalName: INLA.EXE
FileVersion: 3.0.10.1
CompanyName: xa9Dafriettigot maitkag neypgoira
ProductName: INLA
ProductVersion: 3.0.10.1
OriginalFilename: inla.exe
Translation: 0x0409 0x04e4

Malware.AI.2729152272 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005464371 )
LionicAdware.Win32.StartSurf.2!c
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.17937
CynetMalicious (score: 100)
ALYacGen:Variant.Barys.60753
CylanceUnsafe
ZillyaAdware.StartSurf.Win32.89995
SangforTrojan.Win32.Save.a
AlibabaAdWare:Win32/StartSurf.8d641571
K7GWTrojan ( 005464371 )
Cybereasonmalicious.76b324
CyrenW32/S-dabc58ac!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GNDZ
APEXMalicious
AvastWin32:StartSurf-I [Adw]
Kasperskynot-a-virus:HEUR:AdWare.Win32.StartSurf.gen
BitDefenderGen:Variant.Barys.60753
NANO-AntivirusTrojan.Win32.Vittalia.flnnob
MicroWorld-eScanGen:Variant.Barys.60753
TencentMalware.Win32.Gencirc.10b11053
Ad-AwareGen:Variant.Barys.60753
SophosIStartSurfInstaller (PUA)
ComodoApplication.Win32.Dlhelper.GJ@8137f9
BitDefenderThetaAI:Packer.4BE5F7A121
TrendMicroTrojanSpy.Win32.URSNIF.SMY.hp
McAfee-GW-EditionBehavesLike.Win32.Dropper.tz
FireEyeGeneric.mg.379294f76b324922
EmsisoftGen:Variant.Barys.60753 (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.StartSurf.uhd
AviraHEUR/AGEN.1101341
Antiy-AVLTrojan/Generic.ASMalwS.2A13775
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Barys.DED51
GDataGen:Variant.Barys.60753
AhnLab-V3PUP/Win32.StartSurf.R250256
Acronissuspicious
McAfeePacked-FOY!379294F76B32
MAXmalware (ai score=100)
VBA32BScope.Trojan.Vittalia
MalwarebytesMalware.AI.2729152272
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojanSpy.Win32.URSNIF.SMY.hp
RisingTrojan.Kryptik!1.B51F (CLASSIC)
YandexPUA.StartSurf!ibNaaDw5B4c
IkarusPUA.Win32.Prepscram
FortinetW32/Kryptik.GNDZ!tr
AVGWin32:StartSurf-I [Adw]

How to remove Malware.AI.2729152272?

Malware.AI.2729152272 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment