Ransom

How to remove “ML/PE-A + Troj/Ransom-HR”?

Malware Removal

The ML/PE-A + Troj/Ransom-HR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What ML/PE-A + Troj/Ransom-HR virus can do?

  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine ML/PE-A + Troj/Ransom-HR?


File Info:

crc32: 140E10C8
md5: f69135277897a3ed2632b6249dd96cb9
name: F69135277897A3ED2632B6249DD96CB9.mlw
sha1: 1cd4bf1902e1a05b798d6ec8987618133b0779fd
sha256: a2a4121f22ba3e7631efde99bc65fd5839d03d245b31ac32446ab491269381ca
sha512: 676189f6ed4fc8d89b90804c60c24449b5ab182208d4e2913235e67aca29ef32fd414992a1436d9b7347d99177d87ca04dea729f6dff961254d364c8e7af7265
ssdeep: 1536:pgYPhQXwIiPrrjThO+lUBrzCxry1ec7rUyj239auyg53JmLmdgOrV:yYP2XerzhOUxu/XUtauy4YLs
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

ML/PE-A + Troj/Ransom-HR also known as:

K7AntiVirusRiskware ( 0040eff71 )
DrWebTool.ArchiveLock.1
CynetMalicious (score: 100)
ALYacTrojan.Generic.9672136
CylanceUnsafe
AlibabaRansom:Win32/Faker.ecb484ef
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.77897a
CyrenW32/Faker.A.gen!Eldorado
SymantecTrojan.ADH.2
ESET-NOD32a variant of Win32/Filecoder.ACCDFISA.A
APEXMalicious
AvastWin32:Faker-T [Trj]
ClamAVWin.Ransomware.Faker-6981068-0
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderTrojan.Generic.9672136
NANO-AntivirusRiskware.Win32.ArchiveLock.bjniho
SUPERAntiSpywareTrojan.Agent/Gen-Ransom
MicroWorld-eScanTrojan.Generic.9672136
Ad-AwareTrojan.Generic.9672136
SophosML/PE-A + Troj/Ransom-HR
ComodoTrojWare.Win32.Ransom.KRAR@52fzz9
VIPRETrojan.Win32.Ransom.jc (v)
TrendMicroTROJ_RANSOM_BK0845F1.TOMC
McAfee-GW-EditionBehavesLike.Win32.Dropper.ch
FireEyeTrojan.Generic.9672136
EmsisoftTrojan.Generic.9672136 (B)
WebrootW32.Gen.Bt
AviraTR/Dropper.Gen
MicrosoftRansom:Win32/Filecoder.FD!MTB
ArcabitTrojan.Generic.D9395C8
AegisLabTrojan.Multi.Generic.4!c
GDataTrojan.Generic.9672136
McAfeeArtemis!F69135277897
MAXmalware (ai score=72)
MalwarebytesMalware.AI.3002579232
TrendMicro-HouseCallTROJ_RANSOM_BK0845F1.TOMC
RisingTrojan.Ransom!1.66CC (CLASSIC)
YandexRiskware.ArchiveLock!wScyFJ8zlnQ
IkarusWin32.Faker
MaxSecureWin.MxResIcn.Heur.Gen
FortinetW32/RANSOM.HR!tr
AVGWin32:Faker-T [Trj]
Paloaltogeneric.ml

How to remove ML/PE-A + Troj/Ransom-HR?

ML/PE-A + Troj/Ransom-HR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment