Malware

Malware.AI.4126504058 removal tips

Malware Removal

The Malware.AI.4126504058 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4126504058 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Deletes its original binary from disk
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Creates a slightly modified copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.4126504058?


File Info:

crc32: CA74CD23
md5: d1a0fa35672d1bd8149555a2fe2c1f4c
name: D1A0FA35672D1BD8149555A2FE2C1F4C.mlw
sha1: 17f122c1bfa5ab65d7fcf6ea587634cc48862df7
sha256: 82d9404085a23d1ec8b635457c7705ae3661612aadfced2538c043b5bf3f45bf
sha512: 11cf66d9492fc7231472c8fbd91876f5c152c9431f4c13d36b52220586d49a3d18d4a43eefd5da0f63372e8faf2aa3fc114a25b904788c99ceb5d42ea7fb1dff
ssdeep: 12288:QbF7Xh8kapHW+vnnnXueQaphSSmlPu/L3Nlia9lOeKVkapHW+vnnnXueQaphSSmm:Qbxh8R3gu/Ga9lOeKVR3gu/NW6weR3go
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Malware.AI.4126504058 also known as:

K7AntiVirusTrojan ( 00577ea11 )
Elasticmalicious (high confidence)
ALYacGen:Variant.Razy.866116
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 00577ea11 )
Cybereasonmalicious.5672d1
CyrenW32/Kryptik.ECM.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.CTNW
APEXMalicious
AvastWin32:Trojan-gen
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Copak.vho
BitDefenderGen:Variant.Razy.866116
MicroWorld-eScanGen:Variant.Razy.866116
TencentMalware.Win32.Gencirc.10ce5848
Ad-AwareGen:Variant.Razy.866116
SophosML/PE-A + Troj/Agent-BGOS
BitDefenderThetaGen:NN.ZexaF.34266.PuZ@aGo3wXi
FireEyeGeneric.mg.d1a0fa35672d1bd8
EmsisoftGen:Variant.Razy.866116 (B)
JiangminTrojan.Copak.bcoq
AviraTR/Crypt.XPACK.Gen
eGambitUnsafe.AI_Score_94%
Antiy-AVLTrojan/Generic.ASMalwS.330BB32
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ArcabitTrojan.Razy.DD3744
GDataGen:Variant.Razy.866116
AhnLab-V3Malware/Win32.RL_Generic.R293305
Acronissuspicious
McAfeeGlupteba-FTSD!D1A0FA35672D
MAXmalware (ai score=87)
VBA32BScope.Trojan.Wacatac
MalwarebytesMalware.AI.4126504058
RisingMalware.Heuristic!ET#94% (RDMK:cmRtazrm3UmqhJohTBnuoMkEsvja)
YandexTrojan.Copak!gqFo6gHwkhE
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Kryptik.ECM!tr
AVGWin32:Trojan-gen

How to remove Malware.AI.4126504058?

Malware.AI.4126504058 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment