Malware

Malware.AI.4275099543 removal

Malware Removal

The Malware.AI.4275099543 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4275099543 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Unconventionial language used in binary resources: Russian

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.4275099543?


File Info:

crc32: 28F1CCFE
md5: cf18f48ca1b5860da4775bead382bbf9
name: CF18F48CA1B5860DA4775BEAD382BBF9.mlw
sha1: e01f608649851f4c2d4ba4745eb925a04ef91200
sha256: 2385a633df798bc656275ffa538cf55431ad5746e939257d766f478f1c76e9dc
sha512: cd389866764b230c05c85869d8890cecd6c0ed996c0dac7982a03a13e9f3aac770a8500a9a99ad427021644b590ad2c7ad279b66914d42f7176fe3b447fd5831
ssdeep: 12288:mV5oxDYtv6fW+HEv7Z9svkOi8D37u1RGJ4IJ/khZ:mV5DYOzZ9sMyDLu37ckz
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

ProductVersion: 3.3.1016.31
ProductName: GKAlabamaGK.exe
FileVersion: 3.3.1016.31
CompanyName: GKAlabamaGK
Translation: 0x0409 0x04b0

Malware.AI.4275099543 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0056e6b61 )
Elasticmalicious (high confidence)
MicroWorld-eScanApplication.Bundler.ICLoader.5.Gen
ALYacApplication.Bundler.ICLoader.5.Gen
CylanceUnsafe
ZillyaTrojan.Ekstak.Win32.9815
AlibabaTrojan:Win32/Ekstak.c48906ea
K7GWTrojan ( 0056e6b61 )
Cybereasonmalicious.ca1b58
CyrenW32/FraudLoad.F20_DET!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GKJN
APEXMalicious
AvastWin32:ICLoader-X [Adw]
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Ekstak.itrc
BitDefenderApplication.Bundler.ICLoader.5.Gen
NANO-AntivirusTrojan.Win32.Ekstak.fhrfhw
TencentMalware.Win32.Gencirc.10b6374c
Ad-AwareApplication.Bundler.ICLoader.5.Gen
SophosGeneric ML PUA (PUA)
ComodoApplication.Win32.ICLoader.GS@84429a
BitDefenderThetaGen:NN.ZexaF.34294.Su0@aWsSpSik
McAfee-GW-EditionBehavesLike.Win32.Downloader.bm
FireEyeGeneric.mg.cf18f48ca1b5860d
EmsisoftApplication.Bundler.ICLoader.5.Gen (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Ekstak.qvu
AviraTR/ICLoader.Gen8
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.27F2E76
MicrosoftTrojan:Win32/Ekstak.CC!MTB
GDataApplication.Bundler.ICLoader.5.Gen
AhnLab-V3Trojan/Win32.Ekstak.R236735
Acronissuspicious
McAfeeGenericRXGJ-RT!CF18F48CA1B5
MAXmalware (ai score=100)
VBA32BScope.Trojan.Cloxer
MalwarebytesMalware.AI.4275099543
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.AA23 (CLASSIC)
YandexTrojan.GenAsa!666hi1hoXgo
IkarusAdWare.ICLoader
FortinetW32/CoinMiner.GYQC!tr
AVGWin32:ICLoader-X [Adw]

How to remove Malware.AI.4275099543?

Malware.AI.4275099543 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment