Malware

Malware.AI.2655989830 removal guide

Malware Removal

The Malware.AI.2655989830 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2655989830 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.2655989830?


File Info:

crc32: 45F65C44
md5: e37544215f4b585a7403a7f40e865201
name: E37544215F4B585A7403A7F40E865201.mlw
sha1: c5bb35855eb4cbbe55061a814a63f6b0448d7fb7
sha256: 41ed7c4b02e1bd1398e746a3fc08c16369bdf9c01db89b9476fe827611716317
sha512: 8ba57044db1dc4abbb3d73d937e5c09f66b8241fe218b3abb2cf786b77fb11e3c46f20a0b27610351e075216cfbb9949beb2f200183f4e98238fd9fdd2e4a987
ssdeep: 6144:4vhEJLZRGCKBJq7azQrKnVoR0luTzjvx9DrUlxrbq:9J1oCKBJq7qQmS5D59Ol
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: (C) 2007-2015
FileVersion: 4.7.7.701
CompanyName: Masters ITC Tools
PrivateBuild: 4.7.7.701
Comments: Phoenix Unrecoverable Symmetric Chips
ProductName: Window
ProductVersion: 4.7.7.701
FileDescription: Phoenix Unrecoverable Symmetric Chips
Translation: 0x0409 0x04b0

Malware.AI.2655989830 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0056e9401 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.10317
CynetMalicious (score: 100)
CAT-QuickHealTrojan.MauvaiseRI.S5247006
ALYacGen:Variant.Johnnie.199406
CylanceUnsafe
ZillyaTrojan.Crusis.Win32.216
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Crusis.6dcb3d59
K7GWTrojan ( 0056e9401 )
Cybereasonmalicious.15f4b5
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Filecoder.Crysis.L
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Crusis.ph
BitDefenderGen:Variant.Johnnie.199406
NANO-AntivirusTrojan.Win32.Crusis.elwqrg
MicroWorld-eScanGen:Variant.Johnnie.199406
TencentWin32.Trojan.Raas.Auto
Ad-AwareGen:Variant.Johnnie.199406
SophosMal/Generic-S + Mal/Kryptik-DC
F-SecureHeuristic.HEUR/AGEN.1138861
BitDefenderThetaGen:NN.ZexaF.34722.su0@a4WuePdi
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_CRYSIS.F117BM
McAfee-GW-EditionBehavesLike.Win32.TrojanAitInject.dc
FireEyeGeneric.mg.e37544215f4b585a
EmsisoftGen:Variant.Johnnie.199406 (B)
JiangminTrojan.Crusis.fh
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1138861
eGambitUnsafe.AI_Score_98%
Antiy-AVLTrojan/Generic.ASMalwS.1E96BA0
MicrosoftRansom:Win32/FileCryptor
ArcabitTrojan.Johnnie.D30AEE
AegisLabTrojan.Win32.Crusis.j!c
ZoneAlarmTrojan-Ransom.Win32.Crusis.ph
GDataGen:Variant.Johnnie.199406
AhnLab-V3Trojan/Win32.Crusis.C1915682
Acronissuspicious
McAfeeArtemis!E37544215F4B
MAXmalware (ai score=100)
VBA32BScope.Backdoor.Androm
MalwarebytesMalware.AI.2655989830
PandaTrj/RansomCrypt.J
TrendMicro-HouseCallRansom_CRYSIS.F117BM
RisingTrojan.Generic@ML.100 (RDML:iF8+Yw3tvOWBMwlu3dLWbA)
YandexTrojan.Crusis!icQJb9aG3hg
IkarusTrojan.Win32.Filecoder
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Malware.AI.2655989830?

Malware.AI.2655989830 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment