Malware

ML/PE-A + ATK/Swrort-CA removal tips

Malware Removal

The ML/PE-A + ATK/Swrort-CA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What ML/PE-A + ATK/Swrort-CA virus can do?

  • Anomalous binary characteristics

How to determine ML/PE-A + ATK/Swrort-CA?


File Info:

crc32: BAADB468
md5: 353b8951bedcb2baff8331065ffcea6c
name: 353B8951BEDCB2BAFF8331065FFCEA6C.mlw
sha1: 136ad038a0cd79eea7e583234d548f2544fe8e1a
sha256: b74c618573e73d9e0e324dc8adc0b4f7997548f9c17568ded21b345a8383f2c7
sha512: 87f823b83abeedbf0f6aa86c2ed1780b41fc38a1b5326aa6f49f4fb0775c136da1acae26337cc2d41a6ed70751f233b7a9c12a199347fb46ff15cd979c99b971
ssdeep: 3072:RzqTC/VXu6w7e0Nc8QsCdz7ixjhSEfyumhcFL3O4Yygs4S/OVLP/nd/nwnfiYBt:1qGdXu6wy0Nc8Qs4XidwErmhagcWVTJ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright 2009 The Apache Software Foundation.
InternalName: ab.exe
FileVersion: 2.2.14
CompanyName: Apache Software Foundation
Comments: Licensed under the Apache License, Version 2.0 (the "License"); you may not use this file except in compliance with the License. You may obtain a copy of the License at http://www.apache.org/licenses/LICENSE-2.0 Unless required by applicable law or agreed to in writing, software distributed under the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the License for the specific language governing permissions and limitations under the License.
ProductName: Apache HTTP Server
ProductVersion: 2.2.14
FileDescription: ApacheBench command line utility
OriginalFilename: ab.exe
Translation: 0x0409 0x04b0

ML/PE-A + ATK/Swrort-CA also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Zusy.307923
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 0012c6871 )
K7AntiVirusTrojan ( 0012c6871 )
CyrenW32/S-123d852a!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Rozena.ANO
ZonerTrojan.Win32.104277
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Exploit.Alpha_Upper-1
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Zusy.307923
MicroWorld-eScanGen:Variant.Zusy.307923
Ad-AwareGen:Variant.Zusy.307923
SophosML/PE-A + ATK/Swrort-CA
ComodoTrojWare.Win32.Rozena.QR@8esbvx
BitDefenderThetaGen:NN.ZexaF.34628.iu0@ayYWDxhi
McAfee-GW-EditionBehavesLike.Win32.Virut.cm
FireEyeGeneric.mg.353b8951bedcb2ba
EmsisoftGen:Variant.Zusy.307923 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Crypt.XPACK.Gen
eGambitUnsafe.AI_Score_96%
KingsoftWin32.Infected.AutoInfector.a.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
GridinsoftRisk.Win32.Gen.sb!s1
GDataGen:Variant.Zusy.307923
AhnLab-V3Trojan/Win32.Swrort.C695042
Acronissuspicious
McAfeeGenericRXLH-UO!353B8951BEDC
MAXmalware (ai score=84)
MalwarebytesGeneric.Trojan.Obfuscator.DDS
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazq2DxkVf047JDnrGQoATuFw)
IkarusVirus.Win32.Heur
FortinetW32/Rozena.TT!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360HEUR/QVM19.1.14A7.Malware.Gen

How to remove ML/PE-A + ATK/Swrort-CA?

ML/PE-A + ATK/Swrort-CA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment