Malware

Win32/Virlock.AI information

Malware Removal

The Win32/Virlock.AI is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Virlock.AI virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Win32/Virlock.AI?


File Info:

name: 8E8A0C6DABAAD991154E.mlw
path: /opt/CAPEv2/storage/binaries/396f796f6ed49358fe0f36ccff27780d94f492fd5b596faef7a614494aba4e10
crc32: 33E6F58B
md5: 8e8a0c6dabaad991154e548b99c5e962
sha1: 5f8b9ad03ed67f6beeb69b81a1d2caf26c72030e
sha256: 396f796f6ed49358fe0f36ccff27780d94f492fd5b596faef7a614494aba4e10
sha512: c8c3bbb4886cf41e3e66e5c0ef2ee85f263f52bee99f0bfdea9712da79e87c79290aed02644f2d8e0cc21f6ada771fb2619b093f3a04c66af143125dc5c3ea3f
ssdeep: 24576:K0MUV2liOyHyiVVxDMnGEw7NqapZUJMmVGHb/9:GiQtSq/iHp
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10C25E03C530444FEE6182AB98FDA198532ADB4AF453443D1BFE976B761602F5828CF93
sha3_384: 9acdee9c6e67d0721c9e6f5bf803aa61fdf162fd9f85c666f88de20dd4fad71f11151e56ec26ccc3d4cc016a62b34cb1
ep_bytes: 8bd60bdae8bce00e00f7d987da87da0b
timestamp: 2015-01-06 00:36:08

Version Info:

0: [No Data]

Win32/Virlock.AI also known as:

BkavW32.AIDetectMalware
LionicVirus.Win32.PolyRansom.mfPW
tehtrisGeneric.Malware
DrWebTrojan.Packed
MicroWorld-eScanGen:Variant.Ransom.VirLock.13
ClamAVWin.Virus.Virlock-6804475-0
FireEyeGeneric.mg.8e8a0c6dabaad991
SkyhighBehavesLike.Win32.VirRansom.dc
ALYacGen:Variant.Ransom.VirLock.13
Cylanceunsafe
VIPREGen:Variant.Ransom.VirLock.13
SangforRansom.Win32.Save.a
K7AntiVirusTrojan ( 00573f0e1 )
BitDefenderGen:Variant.Ransom.VirLock.13
K7GWTrojan ( 00573f0e1 )
Cybereasonmalicious.dabaad
ArcabitTrojan.Ransom.VirLock.13
BitDefenderThetaAI:Packer.78C7A27F20
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Virlock.AI
APEXMalicious
CynetMalicious (score: 100)
KasperskyVirus.Win32.PolyRansom.b
AlibabaRansom:Win32/PolyRansom.b60ff307
NANO-AntivirusTrojan.Win32.Gena.doticp
RisingVirus.VirLock!1.A08A (CLASSIC)
TACHYONVirus/W32.VirRansom
SophosW32/VirRnsm-N
F-SecureTrojan.TR/Crypt.ZPACK.Gen
Trapminesuspicious.low.ml.score
EmsisoftGen:Variant.Ransom.VirLock.13 (B)
IkarusVirus.Win32.Virlock
GoogleDetected
AviraTR/Crypt.ZPACK.Gen
Antiy-AVLGrayWare/Win32.VirLock.a
Kingsoftmalware.kb.a.1000
XcitiumTrojWare.Win32.Virlock.XU@5xaovq
MicrosoftVirus:Win32/Nabucur.gen
SUPERAntiSpywareRansom.Virlock/Variant
ZoneAlarmVirus.Win32.PolyRansom.b
GDataGen:Variant.Ransom.VirLock.13
VaristW32/Virlock.N.gen!Eldorado
Acronissuspicious
McAfeeW32/VirRansom.b!8E8A0C6DABAA
MAXmalware (ai score=84)
VBA32SScope.Virus.Virlock
MalwarebytesTrojan.VirLock
PandaTrj/Genetic.gen
TencentWin32.Virus.Polyransom.Hdhl
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Virlock.B
AVGWin32:SwPatch [Wrm]
AvastWin32:SwPatch [Wrm]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32/Virlock.AI?

Win32/Virlock.AI removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment