Malware

How to remove “Malware.AI.1227451954”?

Malware Removal

The Malware.AI.1227451954 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1227451954 virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • Drops a binary and executes it
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Attempts to delete volume shadow copies
  • Modifies boot configuration settings
  • Exhibits possible ransomware file modification behavior
  • Writes a potential ransom message to disk
  • Creates a hidden or system file
  • Creates a copy of itself
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

How to determine Malware.AI.1227451954?


File Info:

crc32: B1F2834E
md5: 61cb62c9972bf5790fc1ea4e4395ef1c
name: 61CB62C9972BF5790FC1EA4E4395EF1C.mlw
sha1: b61bf42b1b058c57fc2db138e722e14ae991b736
sha256: 994e8abcbe25b597a35a9afab468e1358c7fac39cdd6311c0af67609916cb723
sha512: 76bafc04e09675fa992fa404a9503da6493a0f8b06ce4b70f38b28b26eb9d07849ee2ffad10608fb5397ebf22cbfea2eb9935b372e2a9dc4c4cfaaf175459010
ssdeep: 3072:6NBbOKnoIKE+Ypjf+MGtmhoWk6a1wKyPKZ:clmE5jfwWk6+wv4
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.1227451954 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0050d6e11 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.6715
CynetMalicious (score: 100)
ALYacTrojan.Ransom.Globe
CylanceUnsafe
ZillyaTrojan.Purga.Win32.19
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/starter.ali1000118
K7GWTrojan ( 0050d6e11 )
Cybereasonmalicious.9972bf
SymantecRansom.Purge
ESET-NOD32a variant of Win32/Filecoder.FS
APEXMalicious
TotalDefenseWin32/Swisyn.D!generic
AvastWin32:Malware-gen
ClamAVWin.Ransomware.Scarab-6965728-0
KasperskyTrojan-Ransom.Win32.Purga.e
BitDefenderGeneric.Ransom.Purge.5EC00B41
NANO-AntivirusTrojan.Win32.MlwGen.eibbjx
MicroWorld-eScanGeneric.Ransom.Purge.5EC00B41
TencentWin32.Trojan.Raas.Auto
Ad-AwareGeneric.Ransom.Purge.5EC00B41
SophosML/PE-A
BitDefenderThetaAI:Packer.9A2617351C
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_PURGE.SM2
McAfee-GW-EditionBehavesLike.Win32.Generic.dz
FireEyeGeneric.mg.61cb62c9972bf579
EmsisoftGeneric.Ransom.Purge.5EC00B41 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/ATRAPS.Gen
eGambitUnsafe.AI_Score_100%
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/Contentocrypt.A
ArcabitGeneric.Ransom.Purge.5EC00B41
GDataGeneric.Ransom.Purge.5EC00B41
AhnLab-V3Trojan/Win32.Dynamer.C1583941
Acronissuspicious
McAfeeGenericR-RHF!61CB62C9972B
MAXmalware (ai score=100)
VBA32BScope.Trojan.Agent
MalwarebytesMalware.AI.1227451954
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_PURGE.SM2
RisingRansom.Pulobe!8.E473 (CLOUD)
YandexTrojan.GenAsa!D27p8+P3+KY
IkarusTrojan-Ransom.FileCrypter
FortinetW32/Filecoder.FS!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HwUBFrYA

How to remove Malware.AI.1227451954?

Malware.AI.1227451954 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment