Malware

Malware.AI.2773061680 (file analysis)

Malware Removal

The Malware.AI.2773061680 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.2773061680 virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Malware.AI.2773061680?


File Info:

crc32: CDA8F517
md5: b8aa21169d69a37a06fd8551b52d922f
name: B8AA21169D69A37A06FD8551B52D922F.mlw
sha1: e95c96e95e8665679c2bca2af1a2dea3a80efd58
sha256: 70cf2870cea1b71117475dfa58cfbbc03a0c72d0672bb50cd9a478c4b2aae816
sha512: 04948dd3495fdf63557ed32f1e3fef95d84e7d6a59327e3d6a403cd49b586194eeb0c4199bdd4a31e60371471ff78a781531855eecf96a417bcb58ceb1dfb882
ssdeep: 3072:rNgsH5UHXVc3aUvneNf6E/JMfoif5fMNMJOZOceU6RMHzpIzF7Xkj3P:xgsH2HXVc3PneNS7P5fWgWzZUo+5K
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.2773061680 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Locky.Gen.1
FireEyeGeneric.mg.b8aa21169d69a37a
CAT-QuickHealRansomware.Generic.WR4
ALYacTrojan.Locky.Gen.1
MalwarebytesMalware.AI.2773061680
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 004f00a01 )
BitDefenderTrojan.Locky.Gen.1
K7GWTrojan ( 004f00a01 )
Cybereasonmalicious.69d69a
CyrenW32/Trojan.HPJV-7761
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallRansom_HPLOCKY.SMA1
Paloaltogeneric.ml
KasperskyTrojan-Ransom.Win32.Locky.akd
AlibabaRansom:Win32/Locky.8a15cc42
NANO-AntivirusTrojan.Win32.Encoder.edwoma
ViRobotTrojan.Win32.Locky.252719
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
RisingMalware.Obscure/Heur!1.9E03 (CLOUD)
Ad-AwareTrojan.Locky.Gen.1
TACHYONRansom/W32.Locky.224554
EmsisoftTrojan.Locky.Gen.1 (B)
F-SecureHeuristic.HEUR/AGEN.1113556
DrWebTrojan.Encoder.4947
ZillyaTrojan.Kryptik.Win32.908770
TrendMicroRansom_HPLOCKY.SMA1
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
SophosMal/Generic-R + Mal/Isda-D
IkarusTrojan-Ransom.FileCrypter
JiangminTrojan.Locky.aok
AviraHEUR/AGEN.1113556
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan[Ransom]/Win32.Locky
MicrosoftRansom:Win32/Locky.A
ArcabitTrojan.Locky.Gen.1
AegisLabTrojan.Win32.Locky.tq00
ZoneAlarmTrojan-Ransom.Win32.Locky.akd
GDataTrojan.Locky.Gen.1
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Locky.R183928
McAfeePWS-FCGP!B8AA21169D69
MAXmalware (ai score=100)
VBA32Trojan.Ransom.05716
PandaTrj/CI.A
APEXMalicious
ESET-NOD32a variant of Win32/Kryptik.FAYV
TencentMalware.Win32.Gencirc.10ba0ee7
YandexTrojan.GenAsa!fy4IxvYwHUg
SentinelOneStatic AI – Malicious PE
FortinetW32/Bebloh.K!tr.spy
BitDefenderThetaGen:NN.ZexaF.34590.nqZ@aOItHkhi
AVGWin32:Malware-gen
AvastWin32:Malware-gen
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Ransom.Locky.HgIASOQA

How to remove Malware.AI.2773061680?

Malware.AI.2773061680 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment