Ransom

Should I remove “Ransom.Conti”?

Malware Removal

The Ransom.Conti is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.Conti virus can do?

  • Network activity detected but not expressed in API logs

How to determine Ransom.Conti?


File Info:

crc32: 6D964CB6
md5: 8a8ced330677fc62a9a9a02f38652c1d
name: 8A8CED330677FC62A9A9A02F38652C1D.mlw
sha1: f4b83a63842384006b7b2fb061dd26d38356a7da
sha256: e64e350861b86d4e05668bc25e6c952880f6b39ca921496ccce1487dbf6acab6
sha512: e4ace9da874641672f1999f1ba3030204bb543a2e3b8ef855ce98c2155be9718e1ff5d69d2b098610d57246ebe0a4cf18ba138a4642e7b2468895005274abddf
ssdeep: 3072:XqS7gtGIeq8KxrvRp1MImcZeuLaxugfCJsOlq8WkJK0BOog/Tt3onM9kHpOBae4:aS7gtyuzFxm16axugfqlMw5g5BkOdSl
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ransom.Conti also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Encoder.32845
MicroWorld-eScanGen:Heur.Ransom.REntS.Gen.1
FireEyeGeneric.mg.8a8ced330677fc62
Qihoo-360HEUR/QVM10.1.DE20.Malware.Gen
McAfeeRansom-Conti!8A8CED330677
CylanceUnsafe
K7AntiVirusTrojan ( 00570e101 )
BitDefenderGen:Heur.Ransom.REntS.Gen.1
K7GWTrojan ( 00570e101 )
Cybereasonmalicious.30677f
BitDefenderThetaGen:NN.ZexaF.34688.lyW@aGdBP9fi
SymantecML.Attribute.HighConfidence
APEXMalicious
KasperskyHEUR:Trojan-Ransom.Win32.Generic
NANO-AntivirusVirus.Win32.Gen.ccmw
Ad-AwareGen:Heur.Ransom.REntS.Gen.1
SophosML/PE-A
F-SecureHeuristic.HEUR/AGEN.1130813
ZillyaTrojan.Generic.Win32.1243043
TrendMicroRansom.Win32.CONTI.SM.hp
McAfee-GW-EditionRansom-Conti!8A8CED330677
EmsisoftGen:Heur.Ransom.REntS.Gen.1 (B)
IkarusWin32.Outbreak
JiangminTrojan.Generic.ggbhk
AviraHEUR/AGEN.1130813
MAXmalware (ai score=85)
Antiy-AVLTrojan[Ransom]/Win32.Conti
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Wacatac.DE!ml
ArcabitTrojan.Ransom.REntS.Gen.1
ZoneAlarmHEUR:Trojan-Ransom.Win32.Generic
GDataGen:Heur.Ransom.REntS.Gen.1
CynetMalicious (score: 85)
VBA32BScope.Trojan.Mansabo
ALYacGen:Heur.Ransom.REntS.Gen.1
MalwarebytesRansom.Conti
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Filecoder.Conti.F
TrendMicro-HouseCallRansom.Win32.CONTI.SM.hp
RisingRansom.Encoder!8.FFD4 (TFE:5:c1aKpJtYPZJ)
YandexTrojan.Filecoder!xyFWU0Bo6Yg
SentinelOneStatic AI – Suspicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Conti.F!tr.ransom
AVGWin32:RansomX-gen [Ransom]
AvastWin32:RansomX-gen [Ransom]
CrowdStrikewin/malicious_confidence_80% (D)
MaxSecureTrojan.Malware.10307848.susgen

How to remove Ransom.Conti?

Ransom.Conti removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment