Malware

Malware.AI.4279306384 removal tips

Malware Removal

The Malware.AI.4279306384 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.4279306384 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Rhaeto (Romance)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Malware.AI.4279306384?


File Info:

crc32: ADA7D785
md5: 33422c0cc863962ec15d495f23ad0e8c
name: 33422C0CC863962EC15D495F23AD0E8C.mlw
sha1: 413226a6cc836d5331258e0fd2bb01888606bc16
sha256: 5f374c83dddb672e03dbe4a79637dc49a35a9190d3334a8a09ece476c2df4e63
sha512: db6e8ddc6d824c822a59dd491b5280bc045adb221ffef22d5f1d3969b7e972f8750bfd05b336e28b61fdf9fe6259209204c43aa32ffaaf6ae4fcd1821c0c12db
ssdeep: 24576:EBgT68Cz+9D2gULGDodeepH4o5kwqEM8RW9s+oB2pXrhiQHZuKuJuQeBei:IgOE9DqLcAJIhEMiy5kQ5uKuJuPgi
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: windbg.exe
FileVersion: 10.0.16299.15 (WinBuild.160101.0800)
CompanyName: Microsoft Corporation
ProductName: Microsoftxae Windowsxae Operating System
ProductVersion: 10.0.16299.15
FileDescription: Windows GUI symbolic debugger
OriginalFilename: windbg.exe
Translation: 0x0409 0x04b0

Malware.AI.4279306384 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005424571 )
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.13656
CynetMalicious (score: 100)
CAT-QuickHealPUA.GenericPMF.S4565995
ALYacGen:Heur.Mint.Zamg.1
CylanceUnsafe
ZillyaAdware.StartSurf.Win32.81752
AlibabaAdWare:Win32/StartSurf.b71a7190
K7GWTrojan ( 005424571 )
Cybereasonmalicious.cc8639
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GMSA
APEXMalicious
AvastWin32:AdwareX-gen [Adw]
Kasperskynot-a-virus:HEUR:AdWare.Win32.StartSurf.gen
BitDefenderGen:Heur.Mint.Zamg.1
NANO-AntivirusRiskware.Win32.StartSurf.fknvhe
MicroWorld-eScanGen:Heur.Mint.Zamg.1
TencentMalware.Win32.Gencirc.10cd3928
Ad-AwareGen:Heur.Mint.Zamg.1
SophosIStartSurfInstaller (PUA)
BitDefenderThetaGen:NN.ZexaF.34266.yx0@aqnD8maO
TrendMicroTROJ_GEN.R002C0PKF21
McAfee-GW-EditionBehavesLike.Win32.Generic.wz
FireEyeGeneric.mg.33422c0cc863962e
EmsisoftGen:Heur.Mint.Zamg.1 (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.StartSurf.cymb
AviraHEUR/AGEN.1114840
Antiy-AVLTrojan/Generic.ASMalwS.299282B
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataGen:Heur.Mint.Zamg.1
AhnLab-V3Malware/Win32.Generic.C2859246
Acronissuspicious
McAfeePacked-FKC!33422C0CC863
MAXmalware (ai score=86)
VBA32Malware-Cryptor.Limpopo
MalwarebytesMalware.AI.4279306384
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0PKF21
RisingTrojan.Kryptik!1.B33C (CLASSIC)
YandexTrojan.GenAsa!KAlUw4rQSG4
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.CFOO!tr
AVGWin32:AdwareX-gen [Adw]
Paloaltogeneric.ml

How to remove Malware.AI.4279306384?

Malware.AI.4279306384 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment