Malware

Should I remove “Malware.AI.4202850598”?

Malware Removal

The Malware.AI.4202850598 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4202850598 virus can do?

  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.4202850598?


File Info:

crc32: C99F2538
md5: 98af3edf4f6fc3885f104ebbb4a44933
name: 98AF3EDF4F6FC3885F104EBBB4A44933.mlw
sha1: 77f9437f3929b87e675e23957bd0d80da7cab1e8
sha256: ea6c0efe9f1e27211804b23c82209dd2114f6c2075fb34abd2f14032c28842c8
sha512: 4221f370ca533947cf66116a4d0e0daea7bac0a1a989188f573d7fdc9225b57cc6c3219f99da56fd73d70c9219910e847a931e84aa27566f448553de82579aa8
ssdeep: 24576:RNQ1pZtDtfu67T8a+SHD+45m5ZbHNYG4k2EV2ynovuTGEQWKgNUGtQu:RNQ1pZDuOTLHNs/pV2yn7TGEZ9+MP
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Samsung Electronic Ltd.
ISInternalVersion: 20.0.376
InternalName: Setup
FileVersion: 4.1.16121.3
CompanyName: Samsung Electronics Co., Ltd.
Internal Build Number: 129067
ProductName: Smart Switch
ProductVersion: 4.1.16121.3
FileDescription: Smart Switch PC Installer 4.0
ISInternalDescription: Setup Launcher Unicode
OriginalFilename: InstallShield Setup.exe
Translation: 0x0409 0x04b0

Malware.AI.4202850598 also known as:

CMCVirus.Win32.RamnitDam.1!O
CAT-QuickHealW32.Ramnit.D
ALYacWin32.Ramnit.Dam
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
Cybereasonmalicious.f4f6fc
BaiduWin32.Virus.Nimnul.dam
CyrenW32/Patched.B!Generic
ESET-NOD32a variant of Win32/Ramnit.CF
ZonerTrojan.Win32.Ramnit.292
APEXMalicious
AvastWin32:Ramnit-CC [Trj]
BitDefenderWin32.Ramnit.Dam
NANO-AntivirusVirus.Win32.Nimnul.fntoeg
MicroWorld-eScanWin32.Ramnit.Dam
TencentWin32.Virus.Nimnul.Hvjj
Ad-AwareWin32.Ramnit.Dam
SophosML/PE-A + W32/Patched-I
ComodoVirus.Win32.Ramnit.OV@3uwchz
BitDefenderThetaAI:FileInfector.FE0962FA10
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Dropper.th
FireEyeWin32.Ramnit.Dam
EmsisoftWin32.Ramnit.Dam (B)
SentinelOneStatic AI – Suspicious PE
JiangminWin32/PatchFile.etx
AviraW32/Patched.Ren.Gen
Antiy-AVLTrojan/Generic.ASVirus.1EC
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitWin32.Ramnit.Dam
GDataWin32.Ramnit.Dam
McAfeeW32/Ramnit!trace
MAXmalware (ai score=83)
MalwarebytesMalware.AI.4202850598
PandaTrj/CI.A
RisingVirus.Ramnit!1.B97C (CLASSIC)
IkarusW32.Ramnit
FortinetW32/Ramnit.DAM!tr
AVGWin32:Ramnit-CC [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.4202850598?

Malware.AI.4202850598 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment