Ransom

Should I remove “Ransom.AvosLocker”?

Malware Removal

The Ransom.AvosLocker is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.AvosLocker virus can do?

  • Exhibits possible ransomware file modification behavior
  • Writes a potential ransom message to disk
  • Network activity detected but not expressed in API logs
  • Appends a known encryptJJS ransomware file extension to files that have been encrypted

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Ransom.AvosLocker?


File Info:

crc32: 1A3030A2
md5: 6e98d5dd95d00369316ba548e3c625b3
name: 6E98D5DD95D00369316BA548E3C625B3.mlw
sha1: d98da136d22d8e06079a1ce991aa3fc2d95bf186
sha256: eb1d63ef65c7f04d361a4547c8601b8fa801fe47f7348fe84bca77e415eb7cf7
sha512: 8da6ba5ece6e76be8551b964b6e3c4ff77ddab56d35d1347ed5304a36f82acf398a348d97c81d4d41178de86cc2bde55671587428c465c46d65d9fd578158792
ssdeep: 24576:SnkXEg1ZlhKG+WWZtCpDCE5Ie534SCeTpOl135HlIX:SkXEg1ZlIzZtCpGE5j5oSHOlxdlIX
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ransom.AvosLocker also known as:

Elasticmalicious (high confidence)
ALYacTrojan.Ransom.AvosLocker
K7GWTrojan ( 0058241e1 )
K7AntiVirusTrojan ( 0058241e1 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.OHU
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Ransom.Win32.Cryptor.gen
BitDefenderGen:Variant.Doina.23104
ViRobotTrojan.Win32.Ransom.943104
MicroWorld-eScanGen:Variant.Doina.23104
Ad-AwareGen:Variant.Doina.23104
SophosML/PE-A
BitDefenderThetaGen:NN.ZexaF.34170.5uX@aOd9LFgi
TrendMicroPossible_SMAVOSLOCKERTHA
FireEyeGeneric.mg.6e98d5dd95d00369
EmsisoftGen:Variant.Doina.23104 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Cryptor.zn
AviraTR/FileCoder.biyta
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ZoneAlarmHEUR:Trojan-Ransom.Win32.Cryptor.gen
GDataGen:Variant.Doina.23104
AhnLab-V3Malware/Win.Generic.C4631445
MAXmalware (ai score=88)
VBA32BScope.TrojanRansom.Cryptor
MalwarebytesRansom.AvosLocker
RisingTrojan.Generic@ML.81 (RDML:7+Idbk7zejDVZrXIBahAfQ)
AVGWin32:MalwareX-gen [Trj]

How to remove Ransom.AvosLocker?

Ransom.AvosLocker removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment