Ransom

Ransom.1238 removal guide

Malware Removal

The Ransom.1238 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.1238 virus can do?

  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs

How to determine Ransom.1238?


File Info:

crc32: 68BB7EF2
md5: 6e220030ca1b76ddfe27a663c6584b1d
name: 6E220030CA1B76DDFE27A663C6584B1D.mlw
sha1: 8c01c9cdf0ce013abe3a7400b5c8bca5fc5c5a2d
sha256: 501137fe56280c408ed428aaccba71b01cbf987eaef2b869e61d57f78c7c1993
sha512: 43ca0afc7b0f5ec4ada680d21b08a18514fe2ae770a8c8ac74a725f185b118d09419c831bd4ecb58fea680968b0a0f50d8e97c07b5840e9e30a1e116e692a0be
ssdeep: 6144:3jT5Zh17eWxoG/+ov/2OIQ4wW3OBsCeAWs7ho/nvvNZVdciPf1/bb:3RZ+IoG/n9IQxW3OBsej7+IiF/bb
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ransom.1238 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0055efd41 )
LionicTrojan.Win32.Makop.trQA
CynetMalicious (score: 100)
ALYacGen:Variant.Ransom.1238
SangforTrojan.Win32.Ransom.1238
K7GWTrojan ( 0055efd41 )
Cybereasonmalicious.0ca1b7
APEXMalicious
AvastFileRepMalware
ClamAVWin.Malware.Qshell-9875653-0
BitDefenderGen:Variant.Ransom.1238
MicroWorld-eScanGen:Variant.Ransom.1238
Ad-AwareGen:Variant.Ransom.1238
BitDefenderThetaGen:NN.ZexaF.34050.zyW@aKEoakgO
McAfee-GW-EditionBehavesLike.Win32.Generic.gh
FireEyeGen:Variant.Ransom.1238
EmsisoftGen:Variant.Ransom.1238 (B)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Ransom.1238
AhnLab-V3Trojan/Win.DC.C4462968
McAfeeArtemis!6E220030CA1B
MAXmalware (ai score=80)
TrendMicro-HouseCallTROJ_GEN.R002H09GR21
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PossibleThreat
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Generic.HgIASZMA

How to remove Ransom.1238?

Ransom.1238 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment