Ransom

Ransom.Spora.22 removal

Malware Removal

The Ransom.Spora.22 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.Spora.22 virus can do?

  • Unconventionial language used in binary resources: Chinese (Traditional)
  • Anomalous binary characteristics

How to determine Ransom.Spora.22?


File Info:

crc32: 29307AB6
md5: 86c9881054e28df1ffaf3e5e33cdb3e8
name: 86C9881054E28DF1FFAF3E5E33CDB3E8.mlw
sha1: f72320f33f7bc815688995225f3b4b38b49e84af
sha256: ac5a7b3457098bbde8d69f6a778353c48dd0796d522d3247ce7797fedb71ae29
sha512: 87ec0fcbe829cdf97f3376c310cfe2c55b95284cee1dbeb52f1dd059b8e1d6399fa37f0c287323513255418b3e2d42058ff0375931a6994be394fff2243df914
ssdeep: 1536:aH6r5CXPjauXQ+KxUb7IxlfPc1ZIyuLVU5DDDsP6JFcDH5J1kjOU:aHqIOq4xxVkZ0LVGUy4DZLKB
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2001
InternalName: RestartDlg
FileVersion: 1, 0, 0, 1
CompanyName:
LegalTrademarks:
ProductName: RestartDlg Application
ProductVersion: 1, 0, 0, 1
FileDescription: RestartDlg MFC Application
OriginalFilename: RestartDlg.EXE
Translation: 0x0404 0x04b0

Ransom.Spora.22 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Ransom.Spora.22
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/Virut.618f6e19
Cybereasonmalicious.054e28
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Patched-AFV [Trj]
BitDefenderGen:Variant.Ransom.Spora.22
NANO-AntivirusVirus.Win32.Virut-Gen.bwpxnc
MicroWorld-eScanGen:Variant.Ransom.Spora.22
TencentWin32.Trojan.Patched.Eckn
Ad-AwareGen:Variant.Ransom.Spora.22
SophosML/PE-A
VIPRELooksLike.Win32.InfectedFile!A (v)
McAfee-GW-EditionBehavesLike.Win32.Infected.dt
FireEyeGeneric.mg.86c9881054e28df1
EmsisoftGen:Variant.Ransom.Spora.22 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Patched.Gen
eGambitUnsafe.AI_Score_77%
MicrosoftTrojan:Win32/Ymacco.AAAC
ArcabitTrojan.Ransom.Spora.22
GDataGen:Variant.Ransom.Spora.22
McAfeeArtemis!86C9881054E2
MAXmalware (ai score=100)
MalwarebytesNeshta.Virus.FileInfector.DDS
RisingTrojan.Generic@ML.100 (RDML:wA1EURd4Y1TIVoPrefkVKA)
IkarusGen.Trojan.Heur
MaxSecureVirus.Mabezat.Dam
AVGWin32:Patched-AFV [Trj]
Paloaltogeneric.ml

How to remove Ransom.Spora.22?

Ransom.Spora.22 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment