Malware

About “Malware.AI.3818614955” infection

Malware Removal

The Malware.AI.3818614955 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3818614955 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Attempts to stop active services
  • Exhibits possible ransomware file modification behavior
  • Writes a potential ransom message to disk
  • Appends a known encryptJJS ransomware file extension to files that have been encrypted
  • Collects information to fingerprint the system

Related domains:

mojobiden.com

How to determine Malware.AI.3818614955?


File Info:

crc32: AFA39B46
md5: 10aa058a3ac49e016cad7987b8e09886
name: 10AA058A3AC49E016CAD7987B8E09886.mlw
sha1: cca6682330a819592c3b1ea0448ceb4e141593dc
sha256: 6d4712df42ad0982041ef0e2e109ab5718b43830f2966bd9207a7fac3af883db
sha512: f115fb62b1ca5e18f6340d42ff4393e2b175917312ae1cc14e7a6a9322cf8adaf22457bc8213e2baafdc2cb19d5db1e5a9c003155cbf142d5a08604495e22f6e
ssdeep: 768:VjjjjjjjjjDahoICS4AIbxCJhjZeO3r825CiqxLbMnkHYnvizKktsLFYXg/ripM:NICS4AgxwhjEO3r825exqkHYnKevTiO
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Malware.AI.3818614955 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00580ce41 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.34245
CynetMalicious (score: 100)
CAT-QuickHealTrojanransom.Crypmodng
ALYacTrojan.Ransom.Filecoder
CylanceUnsafe
ZillyaTrojan.Encoder.Win32.2630
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/BlackMatter.f4d0c0a4
K7GWTrojan ( 00580ce41 )
Cybereasonmalicious.a3ac49
CyrenW32/Trojan.MNNE-5924
SymantecDownloader
ESET-NOD32Win32/Filecoder.BlackMatter.C
APEXMalicious
AvastWin32:BlackMatter-B [Ransom]
KasperskyTrojan-Ransom.Win32.Encoder.nmg
BitDefenderTrojan.GenericKD.37425299
NANO-AntivirusVirus.Win32.Gen.ccmw
MicroWorld-eScanTrojan.GenericKD.37425299
TencentWin32.Trojan.Filecoder.Dwtm
Ad-AwareTrojan.GenericKD.37425299
SophosMal/Generic-S
ComodoMalware@#3g1mm5wln3sj
BitDefenderThetaAI:Packer.347BC22C1E
TrendMicroRansom.Win32.BLACKMATTER.YXBHM-T
McAfee-GW-EditionBehavesLike.Win32.Generic.lh
FireEyeGeneric.mg.10aa058a3ac49e01
EmsisoftTrojan.GenericKD.37425299 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Encoder.ajo
AviraTR/Crypt.EPACK.Gen2
eGambitUnsafe.AI_Score_67%
MicrosoftRansom:Win32/DarkSide.MAK!MTB
GridinsoftRansom.Win32.Ransom.oa!s1
GDataTrojan.GenericKD.37425299
AhnLab-V3Ransomware/Win.BlackMatter.C4575089
McAfeeRansom-BlakMatr!10AA058A3AC4
MAXmalware (ai score=80)
VBA32TScope.Malware-Cryptor.SB
MalwarebytesMalware.AI.3818614955
PandaTrj/CI.A
TrendMicro-HouseCallRansom.Win32.BLACKMATTER.YXBHM-T
RisingTrojan.Generic@ML.88 (RDML:FghImb1A9fDO2VQQvJu6ZQ)
YandexTrojan.Filecoder!5MDkeF1GepM
IkarusTrojan-Ransom.BlackMatter
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/BlackMatter.A!tr.ransom
AVGWin32:BlackMatter-B [Ransom]
Paloaltogeneric.ml

How to remove Malware.AI.3818614955?

Malware.AI.3818614955 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment