Malware

Malware.AI.917597716 malicious file

Malware Removal

The Malware.AI.917597716 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.917597716 virus can do?

  • The executable is compressed using UPX
  • Steals private information from local Internet browsers
  • Mimics the file times of a Windows system file
  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Clears web history

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Malware.AI.917597716?


File Info:

crc32: 4B58FC6A
md5: 1222ed64e9e26f248791d66485906363
name: 1222ED64E9E26F248791D66485906363.mlw
sha1: c65e557698063038ede9ac2c20fa08deb5a86fa3
sha256: 52770470fe58b193e9a25248cb257e4ffb898ebc281e1b34efdc42fbc0352d1c
sha512: 8a29c1bd848414c84b882c899c81fab6d4e02f36f7a3c17d5c5c189a1d1fa8187fd4a6751584af85ad04c7c7fe161b7aac4b1527c7248cfbb7b0066d8155724d
ssdeep: 384:1ebFNw4Pk1itKkpAjjalrhVl8MqYvjSo1OkDCgSrN1w+MB:10FmBkpKjWQPY7fDCbNin
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Malware.AI.917597716 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 004bcce41 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.94
CynetMalicious (score: 100)
CAT-QuickHealRansom.Genasom.29339
ALYacTrojan.Ransom.AIG
CylanceUnsafe
ZillyaTrojan.Xorist.Win32.1408
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaRansom:Win32/Xorist.19056125
K7GWTrojan ( 004bcce41 )
Cybereasonmalicious.4e9e26
BaiduWin32.Trojan.Filecoder.g
CyrenW32/Filecoder.Y.gen!Eldorado
SymantecTrojan.Ransomlock
ESET-NOD32a variant of Win32/Filecoder.Q
ZonerTrojan.Win32.73585
APEXMalicious
AvastWin32:Filecoder-M [Trj]
ClamAVWin.Trojan.CryptoTorLocker2015-1
KasperskyTrojan-Ransom.Win32.Xorist.ln
BitDefenderTrojan.Ransom.AIG
NANO-AntivirusTrojan.Win32.Xorist.dxuuhl
ViRobotTrojan.Win32.A.Xorist.50688
MicroWorld-eScanTrojan.Ransom.AIG
TencentTrojan.Win32.CryptoTorLocker2015.a
Ad-AwareTrojan.Ransom.AIG
SophosML/PE-A + Troj/Ransom-EY
ComodoPacked.Win32.MUPX.Gen@24tbus
BitDefenderThetaGen:NN.ZexaF.34692.cmW@aWmFdwoi
VIPRETrojan.Win32.Ransom.fo (v)
TrendMicroRansom.Win32.SORIKRYPT.SMTH
McAfee-GW-EditionBehavesLike.Win32.Generic.nz
FireEyeGeneric.mg.1222ed64e9e26f24
EmsisoftTrojan.Ransom.AIG (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Xorist.at
WebrootW32.Trojan.Gen
AviraTR/Ransom.Xorist.EJ
Antiy-AVLTrojan/Generic.ASMalwS.27E3E
MicrosoftRansom:Win32/Sorikrypt.A
ArcabitTrojan.Ransom.AIG
AegisLabTrojan.Win32.Xorist.lpjq
ZoneAlarmTrojan-Ransom.Win32.Xorist.ln
GDataTrojan.Ransom.AIG
TACHYONTrojan/W32.Xorist.40448.B
AhnLab-V3Trojan/Win32.Xorist.R25524
Acronissuspicious
McAfeeRansom-FASZ!1222ED64E9E2
MAXmalware (ai score=100)
VBA32Hoax.Xorist
MalwarebytesMalware.AI.917597716
PandaTrj/RansomXor.A
TrendMicro-HouseCallRansom.Win32.SORIKRYPT.SMTH
RisingRansom.Sorikrypt!8.8822 (TFE:dGZlOgKZNz2A8B+pfQ)
YandexTrojan.GenAsa!Lm0QpYhTqAM
IkarusTrojan-Ransom.Xorist
MaxSecureTrojan.Malware.3479359.susgen
FortinetW32/Xorist.DD8C!tr.ransom
AVGWin32:Filecoder-M [Trj]
Paloaltogeneric.ml

How to remove Malware.AI.917597716?

Malware.AI.917597716 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment