Malware

Win32/Filecoder.Crypt888.B information

Malware Removal

The Win32/Filecoder.Crypt888.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Filecoder.Crypt888.B virus can do?

  • Reads data out of its own binary image
  • Attempts to modify desktop wallpaper
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Filecoder.Crypt888.B?


File Info:

crc32: 4B600674
md5: 4a3bc48f453d06a6c5d1d249d0b33204
name: 4A3BC48F453D06A6C5D1D249D0B33204.mlw
sha1: ce9135e8c7dfe32d799e746ab5b75f7d464f2217
sha256: 4e45f5f5b925975e9a2b5ed42e1620d058a8ae188aaab9fd8f72d58c1d5c606e
sha512: 6d3ce78184e342db44df90cd5183bf19954fe377b0fedf89ad25fee646d85d39df629eb97bb163d5bdd75e4495935139fe9f7e7dce44b594f3ab0d88c47c3c5d
ssdeep: 49152:JJZoQrbTFZY1iaLuycEZa4VTDjUnI71CqwCR:JtrbTA1n6Ec+DV71TR
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

CompiledScript: AutoIt v3 Script: 3, 3, 8, 1
FileVersion: 3, 3, 8, 1
FileDescription:
Translation: 0x0809 0x04b0

Win32/Filecoder.Crypt888.B also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.45242634
FireEyeGeneric.mg.4a3bc48f453d06a6
Qihoo-360Win32/Trojan.Ransom.5c2
ALYacTrojan.Ransom.Crypt888
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0050728b1 )
BitDefenderTrojan.GenericKD.45242634
K7GWTrojan ( 0050728b1 )
Cybereasonmalicious.f453d0
BitDefenderThetaAI:Packer.E19D7A3317
CyrenW32/AutoIt.CI.gen!Eldorado
SymantecRansom.CryptXXX
ESET-NOD32a variant of Win32/Filecoder.Crypt888.B
APEXMalicious
AvastAutoIt:Ransom-L [Trj]
ClamAVWin.Malware.Autoit-6992337-0
KasperskyTrojan-Ransom.Win32.Gen.hfy
AlibabaRansom:Win32/Pocrimcrypt.73d6c12d
NANO-AntivirusTrojan.Win32.Ransom.expzro
Ad-AwareTrojan.GenericKD.45242634
EmsisoftTrojan.GenericKD.45242634 (B)
ComodoTrojWare.Win32.Injector.EUXI@4yxp37
F-SecureHeuristic.HEUR/AGEN.1110296
DrWebTrojan.MulDrop7.61338
ZillyaTrojan.Filecoder.Win32.7046
TrendMicroRansom.AutoIt.CRYPTEIGHT.SMTH
McAfee-GW-EditionBehavesLike.Win32.Dropper.tc
SophosMal/Generic-S
IkarusTrojan-Ransom.Crypt888
JiangminTrojan.Banker.Agent.cal
AviraHEUR/AGEN.1110296
MAXmalware (ai score=99)
Antiy-AVLTrojan[Ransom]/Win32.AutoItLock.a
MicrosoftRansom:Win32/Pocrimcrypt.A
ArcabitTrojan.Generic.D2B2590A
AhnLab-V3Trojan/Win32.RL_Agent.R278204
ZoneAlarmTrojan-Ransom.Win32.Gen.hfy
GDataTrojan.GenericKD.45242634
CynetMalicious (score: 100)
McAfeeArtemis!4A3BC48F453D
VBA32Hoax.Gen
MalwarebytesTrojan.Injector.AutoIt.Generic
TrendMicro-HouseCallRansom.AutoIt.CRYPTEIGHT.SMTH
RisingRansom.Crypt888/Autoit!1.C27B (CLASSIC)
eGambitUnsafe.AI_Score_92%
FortinetW32/Filecoder.DYB!tr
AVGAutoIt:Ransom-L [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)
MaxSecureTrojan.Autoit.AZA

How to remove Win32/Filecoder.Crypt888.B?

Win32/Filecoder.Crypt888.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment