Malware

About “Malware.AI.4276553272” infection

Malware Removal

The Malware.AI.4276553272 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4276553272 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
all.fingersleep.bid
none.coalrate.men

How to determine Malware.AI.4276553272?


File Info:

crc32: 109959BE
md5: c33c8a690ac30566022c3ecf69e447ef
name: C33C8A690AC30566022C3ECF69E447EF.mlw
sha1: 6a8c3c95fd340ea1cc5e53da806a4edb906d7698
sha256: 0381d8e8a652a3eaf1a4317c758703dba3db334c84b41c5a38eb4eb9751e7c62
sha512: 00825a1e3c961abc2183f313aa04e8a56de7b49268bdb5f7c8a0c986ac335ca4b4349dc649cde786528721eabe76656b00b807e1b85808bff1bfb2a30fe279dc
ssdeep: 12288:pa4d+GKifcoWU2zG9+H9mCH3U2dP7Qe+Jn4jUYsLEnh5zpSPGyo3+C72MbgCpJc:p4zkszGsnYL+UehqBgrpJcoUyfO
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9Nhahod edututo anbaitehokoghe
InternalName: EPHEFIADIRHEUD.EXE
FileVersion: 1.2.1.0
CompanyName: xa9Nhahod edututo anbaitehokoghe
ProductName: EPHEFIADIRHEUD
ProductVersion: 1.2.1.0
OriginalFilename: ephefiadirheud.exe
Translation: 0x0409 0x04e4

Malware.AI.4276553272 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053ba2f1 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.17914
MicroWorld-eScanApplication.Bundler.iStartSurf.1.Gen
ALYacApplication.Bundler.iStartSurf.1.Gen
CylanceUnsafe
ZillyaTool.Bundler.Win32.20143
SangforTrojan.Win32.Save.a
AlibabaAdWare:Win32/Kryptik.8af1e9f5
K7GWTrojan ( 0053ba2f1 )
Cybereasonmalicious.90ac30
CyrenW32/S-c6bee042!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GJAJ
APEXMalicious
AvastWin32:Adware-gen [Adw]
CynetMalicious (score: 100)
Kasperskynot-a-virus:HEUR:AdWare.Win32.Generic
BitDefenderApplication.Bundler.iStartSurf.1.Gen
NANO-AntivirusTrojan.Win32.Kryptik.fgiuxz
TencentMalware.Win32.Gencirc.10b492f9
Ad-AwareApplication.Bundler.iStartSurf.1.Gen
ComodoApplication.Win32.Dlhelper.GE@8159h4
BitDefenderThetaGen:NN.ZexaF.34266.lw0@aiKUv2gi
McAfee-GW-EditionBehavesLike.Win32.ExtenBro.vz
FireEyeGeneric.mg.c33c8a690ac30566
EmsisoftApplication.Bundler.iStartSurf.1.Gen (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.StartSurf.epx
WebrootW32.Adware.Gen
AviraTR/Crypt.XPACK.Gen4
Antiy-AVLTrojan/Generic.ASMalwS.2754658
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataApplication.Bundler.iStartSurf.1.Gen
AhnLab-V3Malware/Win32.Generic.C2663743
Acronissuspicious
McAfeePacked-FKC!C33C8A690AC3
MAXmalware (ai score=99)
VBA32BScope.Adware.StartSurf
MalwarebytesMalware.AI.4276553272
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0PKI21
RisingTrojan.Kryptik!1.B33C (CLASSIC)
YandexTrojan.GenAsa!WWg4a6Whslc
IkarusPUA.Dlhelper
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.CFOO!tr
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Malware.AI.4276553272?

Malware.AI.4276553272 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment