Ransom

Generic.Ransom.Spora.CD15D039 removal instruction

Malware Removal

The Generic.Ransom.Spora.CD15D039 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Spora.CD15D039 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Mimics the system’s user agent string for its own requests
  • Behavior consistent with a dropper attempting to download the next stage.
  • Exhibits behavior characteristic of Locky ransomware

How to determine Generic.Ransom.Spora.CD15D039?


File Info:

crc32: D9704CEE
md5: 5b889ec6f4242b74c31218b6cd255560
name: 5B889EC6F4242B74C31218B6CD255560.mlw
sha1: 62f7840c3db1361208a518cf81442174b2a4c3fc
sha256: 98475370beea72c170b5b6ba2b15e04891e402188792d51c75d2f164e2c70565
sha512: 1a49ff96504a940ab9658902e1bd7000c8d8737b7368e66bf4fd87a5ab864d7e3e08c8643af18daffef30dd06b9b4d16aa065334202e6ba159fe3d18cbfd106e
ssdeep: 1536:BsUli9zMamAmw2q9vMvmU2sgV/ot3W0JDAYS383SspgayTwxTO+iOt:r09wUEvmJsgVgt3WQHS39NctO+Z
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.Spora.CD15D039 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 004e11d21 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.4207
CynetMalicious (score: 100)
CAT-QuickHealWorm.Kasidet.MUE.B4
ALYacGeneric.Ransom.Spora.CD15D039
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.2175
SangforRansom.Win32.Locky_7.se
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Locky.55b90077
K7GWTrojan ( 004e11d21 )
Cybereasonmalicious.6f4242
CyrenW32/Risk.IROJ-7196
SymantecRansom.Locky
ESET-NOD32a variant of Win32/Filecoder.Locky.B
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Ransomware.Locky-30744
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Ransom.Spora.CD15D039
NANO-AntivirusTrojan.Win32.Encoder.ebcgmh
ViRobotTrojan.Win32.U.Agent.108032.C
MicroWorld-eScanGeneric.Ransom.Spora.CD15D039
TencentMalware.Win32.Gencirc.10c03cdf
Ad-AwareGeneric.Ransom.Spora.CD15D039
SophosMal/Generic-S
BitDefenderThetaAI:Packer.1CF9690C1E
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_LOCKY.SM3
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
FireEyeGeneric.mg.5b889ec6f4242b74
EmsisoftGeneric.Ransom.Spora.CD15D039 (B)
SentinelOneStatic AI – Malicious PE
WebrootLocky.Ransom
AviraTR/Ransom.A.100
eGambitUnsafe.AI_Score_99%
MicrosoftRansom:Win32/Locky.A
ArcabitGeneric.Ransom.Spora.CD15D039
AegisLabTrojan.Win32.Locky.j!c
GDataWin32.Trojan-Ransom.Locky.AM
TACHYONTrojan/W32.Locky.108032
AhnLab-V3Trojan/Win32.Locky.R177301
Acronissuspicious
McAfeeRansomware-FKH!5B889EC6F424
MAXmalware (ai score=100)
VBA32TScope.Malware-Cryptor.SB
MalwarebytesRansom.Locky
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_LOCKY.SM3
RisingRansom.Locky!8.1CD4 (CLOUD)
YandexTrojan.Filecoder!S9YFn4Gl2qg
IkarusTrojan-Ransom.Locky
FortinetW32/Locky.B!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HgIASOYA

How to remove Generic.Ransom.Spora.CD15D039?

Generic.Ransom.Spora.CD15D039 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment