Ransom

Ransom.Autoit.CryptoWire.A removal

Malware Removal

The Ransom.Autoit.CryptoWire.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.Autoit.CryptoWire.A virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Ransom.Autoit.CryptoWire.A?


File Info:

crc32: 9716100D
md5: 9076ec3f2a45f71777ea8d2bd89570e5
name: 9076EC3F2A45F71777EA8D2BD89570E5.mlw
sha1: 769d525aa130724262215681d2d0790c7c2e2216
sha256: 7e2afa71a4650802e0f3d868928f74d151e78ebae4138c371dd30a14db52a735
sha512: 4dd605c9d608845443d4d312f4989104b21386ffbb52d660aaa4a26789ef4a5a8db91bda2869616eb8d8dd7c2046de34bbc2e0ba812c5f495f097659b4515e37
ssdeep: 24576:OAHnh+eWsN3skA4RV1Hom2KXcmtcUODcM:5h+ZkldoPKsacUg
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

Ransom.Autoit.CryptoWire.A also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.13147
CAT-QuickHealRansom.Autoit.CryptoWire.A
ALYacGeneric.Ransom.AIT.Ouroboros.5FDB8EFA
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderGeneric.Ransom.AIT.Ouroboros.5FDB8EFA
Cybereasonmalicious.f2a45f
SymantecRansom.Cryptolocker
ESET-NOD32multiple detections
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
MicroWorld-eScanGeneric.Ransom.AIT.Ouroboros.5FDB8EFA
Ad-AwareGeneric.Ransom.AIT.Ouroboros.5FDB8EFA
SophosML/PE-A
BitDefenderThetaAI:Packer.C658345116
TrendMicroMal_Cryptoit-1
McAfee-GW-EditionBehavesLike.Win32.TrojanAitInject.ch
FireEyeGeneric.mg.9076ec3f2a45f717
EmsisoftGeneric.Ransom.AIT.Ouroboros.5FDB8EFA (B)
AviraHEUR/AGEN.1134135
eGambitUnsafe.AI_Score_78%
MicrosoftProgram:Win32/Wacapew.C!ml
GDataGeneric.Ransom.AIT.Ouroboros.5FDB8EFA (2x)
Acronissuspicious
MAXmalware (ai score=82)
TrendMicro-HouseCallMal_Cryptoit-1
RisingRansom.CryptoWire/Autoit!1.C3A2 (CLASSIC)
IkarusTrojan-Ransom.Ouroboros
FortinetAutoIt/Ouroboros.A!tr.ransom
Qihoo-360HEUR/QVM10.1.4E5B.Malware.Gen

How to remove Ransom.Autoit.CryptoWire.A?

Ransom.Autoit.CryptoWire.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment