Malware

Java/Filecoder.AF (file analysis)

Malware Removal

The Java/Filecoder.AF is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Java/Filecoder.AF virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Creates a hidden or system file
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

How to determine Java/Filecoder.AF?


File Info:

crc32: 5F5FB84A
md5: 903f9076aadc67938aed2929cc051d53
name: 903F9076AADC67938AED2929CC051D53.mlw
sha1: ef6a480071e6fbe4b6304cf9245a0109824c0a89
sha256: 0e06e9f5f272d6b22274382cf282a4f58c37621a6855f69b1c91a7d72fc92354
sha512: a37c1d3e11b47271c51c0451f1f5bfec49bf9ec3ccd035c1267ee403dc7a0ce216bf9de08895f269750f9f7070f63801ef0198f238163d0faa2cd2b5ace6b505
ssdeep: 6144:iioPxpPX9bIH6jVg8c65VteFZan2jmjTxnbSXsKW:nyX9I6jE65VteFZan2ajTxnbSa
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Java/Filecoder.AF also known as:

LionicTrojan.Win32.Agent.j!c
DrWebTrojan.MulDrop9.4368
CAT-QuickHealTrojanRansom.Agent
ALYacTrojan.Ransom.Filecoder
CylanceUnsafe
ZillyaTrojan.Filecoder.JS.3
SangforRansom.Win32.Agent.auwh
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Cryptor.9324cb15
K7GWTrojan ( 005487e31 )
K7AntiVirusTrojan ( 005487e31 )
CyrenW32/Trojan.JSBH-6315
SymantecDownloader
ESET-NOD32Java/Filecoder.AF
AvastJava:Malware-gen [Trj]
KasperskyTrojan-Ransom.Win32.Agent.auwh
BitDefenderTrojan.GenericKD.41039316
NANO-AntivirusTrojan.Win32.Filecoder.fnjxsz
ViRobotTrojan.Win32.S.Ransom.311533
MicroWorld-eScanTrojan.GenericKD.41039316
TencentWin32.Trojan.Agent.Hprr
Ad-AwareTrojan.GenericKD.41039316
SophosMal/Generic-S
ComodoMalware@#34wfbzdbprszo
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_FRS.0NA103C419
McAfee-GW-EditionBehavesLike.Win32.Dropper.fc
FireEyeTrojan.GenericKD.41039316
EmsisoftTrojan.Ransom.PewCrypt (A)
WebrootW32.Malware.Gen
Antiy-AVLTrojan/Generic.ASSuf.27206
MicrosoftTrojan:MSIL/Cryptor
ArcabitTrojan.Generic.D27235D4
GDataTrojan.GenericKD.41039316
AhnLab-V3Malware/Gen.Generic.C3038413
McAfeeGeneric .lb
MAXmalware (ai score=100)
VBA32TrojanRansom.Agent
MalwarebytesRansom.FileCryptor
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_FRS.0NA103C419
IkarusTrojan-Ransom.FileCrypter
MaxSecureTrojan.Malware.74150825.susgen
FortinetJava/Filecoder.AF!tr
AVGJava:Malware-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HgAASREA

How to remove Java/Filecoder.AF?

Java/Filecoder.AF removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment