Malware

Malware.AI.3626873827 malicious file

Malware Removal

The Malware.AI.3626873827 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3626873827 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Czech
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Checks the CPU name from registry, possibly for anti-virtualization
  • Attempts to modify proxy settings

How to determine Malware.AI.3626873827?


File Info:

crc32: 96366B98
md5: 30d6114a378837266043fe3eee2bf3b0
name: 30D6114A378837266043FE3EEE2BF3B0.mlw
sha1: ce67338aba1c46e65a0bd493eb0ca3f8f5f951e8
sha256: 884860264eb755621e39e51631ce45477abfd1cc5b8f9495f251900c69c0efb2
sha512: 1200bd006ce4c5499c1af79c763dd7517a20ad360ba282f7554afd394637b43ba6e1ca13f651018a6576a38d8ca00416a6d4b340abbb83f88d941d263584d8bf
ssdeep: 6144:jOmsgOlHEtDb4IfSCbY34AOw2ELsnZq64MUr:jOrktDb4Ifl/q2m2q6C
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2017, cixacpgola
FileVersion: 8.4.3.12

Malware.AI.3626873827 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053a0511 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.24300
CynetMalicious (score: 100)
ALYacTrojan.Ransom.GandCrab
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/Kryptik.6632b584
K7GWTrojan ( 0053a0511 )
Cybereasonmalicious.a37883
ESET-NOD32a variant of Win32/Kryptik.GJRD
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Razy.812744
NANO-AntivirusTrojan.Win32.GandCrypt.fietfh
ViRobotTrojan.Win32.S.GandCrab.313344
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
MicroWorld-eScanGen:Variant.Razy.812744
TencentWin32.Trojan.Raas.Auto
Ad-AwareGen:Variant.Razy.812744
SophosML/PE-A + Mal/GandCrab-G
ComodoTrojWare.Win32.Crypt.ACE@7wfy01
BitDefenderThetaGen:NN.ZexaF.34670.tu0@ayxqaRdG
TrendMicroMal_HPGen-50
McAfee-GW-EditionBehavesLike.Win32.Backdoor.fc
FireEyeGeneric.mg.30d6114a37883726
EmsisoftGen:Variant.Razy.812744 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.blcud
WebrootW32.Adware.Installcore
AviraTR/GandCrab.idc
MicrosoftRansom:Win32/Genasom
ArcabitTrojan.Razy.DC66C8
AegisLabTrojan.Win32.GandCrypt.j!c
GDataWin32.Trojan-Ransom.GandCrab.N
AhnLab-V3Win-Trojan/MalPe34.Suspicious.X2029
Acronissuspicious
McAfeePacked-FKN!30D6114A3788
VBA32Trojan.Fuerboos
MalwarebytesMalware.AI.3626873827
PandaTrj/GdSda.A
TrendMicro-HouseCallMal_HPGen-50
RisingMalware.Obscure/Heur!1.9E03 (CLOUD)
YandexTrojan.GenAsa!oSjEHxLwVSw
IkarusTrojan.Crypt
eGambitUnsafe.AI_Score_98%
FortinetW32/Kryptik.GKJF!tr
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.GandCrab.HwoCEpsA

How to remove Malware.AI.3626873827?

Malware.AI.3626873827 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment