Virus

Virus:Win32/Sality.AM!corrupt removal tips

Malware Removal

The Virus:Win32/Sality.AM!corrupt is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Virus:Win32/Sality.AM!corrupt virus can do?

  • Unconventionial language used in binary resources: Russian
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Virus:Win32/Sality.AM!corrupt?


File Info:

crc32: 78FDA356
md5: e866b41ee6d4031982b73039d6b0abb0
name: 114294_5457_compmodel.exe
sha1: 3b7bf465b46f9983979e1f3144b26770a07b4dc3
sha256: 4b4d931f268a586ca6e8a0a137162876b62a41f47f4f7a4814fe4bed31f8138c
sha512: 8f06aaf30087fad7ac4ab7fe4c8b9a7b6514b1514ee0f5f3756900d52ca5f9ec59fe064fcb4f1472bd3c5b68ce002610e95e46c758a2dabb6f54160266683138
ssdeep: 12288:SCiR1P7ASzGOpcJ3y8BX1c7+dcAL8Cgb7vPpUwkrZSsPdv:SP1DASzG0cmpAXgbKNSot
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: SuperModel
FileVersion: 1
ProductName: CompModel Application
ProductVersion: 2.21
FileDescription: SuperModel MFC Application
OriginalFilename: CompModel.EXE
Translation: 0x0409 0x04b0

Virus:Win32/Sality.AM!corrupt also known as:

MicroWorld-eScanTrojan.GenericKD.33568154
FireEyeGeneric.mg.e866b41ee6d40319
CylanceUnsafe
VIPREVirus.Win32.Sality.gen.am (v)
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderTrojan.GenericKD.33568154
BitDefenderThetaGen:NN.ZexaF.34104.Lq3@amWPfQck
SymantecW32.Almanahe.B
APEXMalicious
AvastWin32:Sality
ClamAVWin.Trojan.Sality-1055
GDataTrojan.GenericKD.33568154
AlibabaVirus:Win32/Sality.241f343b
NANO-AntivirusVirus.Win32.Virut-Gen.bwpxnc
AegisLabVirus.Win32.Malicious.n!c
Ad-AwareTrojan.GenericKD.33568154
SophosMal/Generic-S
F-SecureMalware.W32/Almanahe.C
McAfee-GW-EditionBehavesLike.Win32.Virut.hh
Trapminemalicious.moderate.ml.score
EmsisoftTrojan.GenericKD.33568154 (B)
IkarusVirus.Win32.Sality
AviraW32/Almanahe.C
MAXmalware (ai score=99)
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D200359A
MicrosoftVirus:Win32/Sality.AM!corrupt
Acronissuspicious
ALYacTrojan.GenericKD.33568154
PandaTrj/CI.A
RisingWin32.KUKU.a (CLOUD)
SentinelOneDFI – Malicious PE
FortinetPossibleThreat
AVGWin32:Sality
Cybereasonmalicious.5b46f9
Paloaltogeneric.ml
Qihoo-360Win32/Virus.b49

How to remove Virus:Win32/Sality.AM!corrupt?

Virus:Win32/Sality.AM!corrupt removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment