Malware

About “Malware.AI.4219600962” infection

Malware Removal

The Malware.AI.4219600962 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4219600962 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
make.campzephyr.host
create.guitarchange.site

How to determine Malware.AI.4219600962?


File Info:

crc32: 69E74BD0
md5: 747ed7b3bf926e6d0512a0c86e629088
name: 747ED7B3BF926E6D0512A0C86E629088.mlw
sha1: 436ec2613efb5ffc449dd00931ccc1010e6a988a
sha256: 1dd951324dcc3d6f941d0661fa134c88f9dcc7841ea3b8d315a134c5c339dce0
sha512: 6ea369865ac1eeeca23a10723a0ab3d30df035a14467508ca5a885e4bcd1dd21a5740e1f669793b01cf91dbd2fecf3ad12444d514709decb9eef017813a6c676
ssdeep: 24576:f/tbkYO3vTKhXUtlvN0eo/ZCLC9/8oUOj3BjBu0zysRK:f1CfT/lu4Sz
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9Ilateuhy duamniomis
InternalName: ELITEGEGTA.EXE
FileVersion: 1.3.10.2
CompanyName: xa9Ilateuhy duamniomis
ProductName: ELITEGEGTA
ProductVersion: 1.3.10.2
OriginalFilename: elitegegta.exe
Translation: 0x0409 0x04e4

Malware.AI.4219600962 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053f6df1 )
LionicAdware.Win32.StartSurf.2!c
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Panda.12212
CynetMalicious (score: 100)
ALYacGen:Heur.Mint.Zamg.1
CylanceUnsafe
ZillyaAdware.StartSurf.Win32.64328
AlibabaAdWare:Win32/StartSurf.f47389fc
K7GWTrojan ( 0053f6df1 )
Cybereasonmalicious.3bf926
CyrenW32/Kryptik.DID.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GMMA
APEXMalicious
AvastWin32:Trojan-gen
Kasperskynot-a-virus:HEUR:AdWare.Win32.StartSurf.gen
BitDefenderGen:Heur.Mint.Zamg.1
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanGen:Heur.Mint.Zamg.1
TencentMalware.Win32.Gencirc.10cc622c
Ad-AwareGen:Heur.Mint.Zamg.1
SophosIStartSurfInstaller (PUA)
BitDefenderThetaGen:NN.ZexaF.34266.1s0@aCxv02oi
McAfee-GW-EditionBehavesLike.Win32.Packed.vz
FireEyeGeneric.mg.747ed7b3bf926e6d
EmsisoftGen:Heur.Mint.Zamg.1 (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.StartSurf.pbd
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.28B0622
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Mint.Zamg.1
GDataGen:Heur.Mint.Zamg.1
Acronissuspicious
McAfeePacked-FKC!747ED7B3BF92
MAXmalware (ai score=88)
VBA32BScope.Adware.Prepscram
MalwarebytesMalware.AI.4219600962
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B33C (CLASSIC)
IkarusPUA.Dlhelper
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.FSMR!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Malware.AI.4219600962?

Malware.AI.4219600962 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment