Malware

MSIL/Filecoder.AHO malicious file

Malware Removal

The MSIL/Filecoder.AHO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Filecoder.AHO virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine MSIL/Filecoder.AHO?


File Info:

crc32: 89CD940E
md5: 366a82fb4398cd242fde0df5fb81af96
name: 366A82FB4398CD242FDE0DF5FB81AF96.mlw
sha1: b2ffdddea070f0530de4e448a2152b953aefac15
sha256: 59acaa3af2477ef63f9266e23eca6085f69dcea05d88d95e5bf8153bb5590fa8
sha512: 9da39100f379c23e7f596efe020bb3d1f441590e5c4dbdc2ba9315b83d0d7802b2ec8b056d2e7ca75257f9de5af04de48de1d77a53ca563e7d18b72d85d71e04
ssdeep: 192:OvMp6JijywLS1+0wQCh4HYxW6ktjWxCG/80XYyf0H85YcKV1:qMAojyn12UHYYftoCiXf0HkYcKV1
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2021
Assembly Version: 1.0.0.0
InternalName: w.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: w
ProductVersion: 1.0.0.0
FileDescription: w
OriginalFilename: w.exe

MSIL/Filecoder.AHO also known as:

K7AntiVirusRiskware ( 0040eff71 )
DrWebTrojan.EncoderNET.31373
CynetMalicious (score: 100)
ALYacTrojan.Ransom.Filecoder
ZillyaTrojan.Filecoder.Win32.18466
SangforTrojan.MSIL.Diztakun.gen
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:MSIL/Cryptolocker.fe42eea5
K7GWRiskware ( 0040eff71 )
CyrenW32/Trojan.FDS.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32MSIL/Filecoder.AHO
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.MSIL.Diztakun.gen
BitDefenderTrojan.GenericKD.46032801
MicroWorld-eScanTrojan.GenericKD.46032801
Ad-AwareTrojan.GenericKD.46032801
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34686.bm0@aGSfX5j
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionRDN/Ransom
FireEyeGeneric.mg.366a82fb4398cd24
EmsisoftTrojan.GenericKD.46032801 (B)
WebrootW32.Trojan.MSIL.Diztakun
AviraTR/Ransom.zstnv
eGambitUnsafe.AI_Score_99%
MicrosoftRansom:MSIL/Cryptolocker.PDM!MTB
AegisLabTrojan.MSIL.Diztakun.4!c
GDataTrojan.GenericKD.46032801
AhnLab-V3Behavior_Ransom/Win.CRYPTOLOCKER.C4407094
McAfeeRDN/Ransom
MAXmalware (ai score=84)
VBA32TScope.Trojan.MSIL
MalwarebytesRansom.FileCryptor
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom.MSIL.CRYPTOLOCKER.SM
RisingRansom.DaddyCrypt!1.D2A1 (CLOUD)
IkarusTrojan-Ransom.FileCrypter
FortinetW32/Diztakun.AHO!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove MSIL/Filecoder.AHO?

MSIL/Filecoder.AHO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment