Malware

Malware.AI.849276241 (file analysis)

Malware Removal

The Malware.AI.849276241 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.849276241 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself

How to determine Malware.AI.849276241?


File Info:

crc32: 7DEE135A
md5: 8e53b4967831ea6ab9b57441a9a56dba
name: 8E53B4967831EA6AB9B57441A9A56DBA.mlw
sha1: 05c6f682ea725fd7fe5b35c1ec566328c6bf7466
sha256: 32ff172838184bddd7065e1ad5780b65671d6f4a8e2ac89bea272a47765e8222
sha512: 901e1e617df29efe9d30794e5dfe5816a3329160c443e35148402bc03de9a2934eb1d59da56573077f4fb40eff2ffdbb3b0e1da154eec5cd0149db096a02b9ee
ssdeep: 12288:jFn50h0hVdEZTyMJ+zPj7mPYV4GHQqUghn8WDndrRbtEAMlXIJMuF391MgG83:BmGrdExyMJ+DjagV4mgY8GdJCXIJMsw
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: Copyright(C) 2013 by FtpScripter
InternalName: FtpScripter Editor
FileVersion: 2.0.5.25
CompanyName: Scripter
LegalTrademarks: FtpScripter
ProductName: FtpScripter
ProductVersion: 2.0
FileDescription: FtpScripter Editor
OriginalFilename: FtpScripterEditor.exe
Translation: 0x0409 0x04e4

Malware.AI.849276241 also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGeneric.MSIL.Ransomware.Jigsaw.06F752E6
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (D)
AlibabaTrojanBanker:MSIL/Confuser.48151a5e
K7GWTrojan ( 0053fc801 )
K7AntiVirusTrojan ( 0053fc801 )
SymantecML.Attribute.HighConfidence
ESET-NOD32multiple detections
APEXMalicious
AvastWin32:PWSX-gen [Trj]
KasperskyHEUR:Trojan-Banker.MSIL.BitStealer.gen
BitDefenderGeneric.MSIL.Ransomware.Jigsaw.06F752E6
NANO-AntivirusTrojan.Win32.Ransom.evaufr
MicroWorld-eScanGeneric.MSIL.Ransomware.Jigsaw.06F752E6
TencentMsil.Trojan-banker.Bitstealer.Ecud
Ad-AwareGeneric.MSIL.Ransomware.Jigsaw.06F752E6
SophosML/PE-A + Troj/Jigsaw-L
ComodoMalware@#23d6ro3624961
F-SecureHeuristic.HEUR/AGEN.1109336
BitDefenderThetaGen:NN.ZemsilF.34608.Rm0@aKS0ZFci
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
FireEyeGeneric.mg.8e53b4967831ea6a
EmsisoftGeneric.MSIL.Ransomware.Jigsaw.06F752E6 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.fefel
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1109336
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Win32.AGeneric
MicrosoftTrojan:MSIL/Confuser.UI
ArcabitGeneric.MSIL.Ransomware.Jigsaw.06F752E6
AegisLabTrojan.Win32.Generic.4!c
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGeneric.MSIL.Ransomware.Jigsaw.06F752E6
AhnLab-V3Trojan/Win32.Ransomlock.R217840
McAfeeArtemis!8E53B4967831
MAXmalware (ai score=98)
MalwarebytesMalware.AI.849276241
PandaTrj/GdSda.A
RisingRansom.JigsawLocker!8.52DD (CLOUD)
YandexTrojan.Agent!qMzfRdS9erQ
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/CoinStealer.AA!tr.pws
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HgIASOkA

How to remove Malware.AI.849276241?

Malware.AI.849276241 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment