Ransom

About “Ransom.Wanacry.S1670343” infection

Malware Removal

The Ransom.Wanacry.S1670343 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.Wanacry.S1670343 virus can do?

  • Authenticode signature is invalid

How to determine Ransom.Wanacry.S1670343?


File Info:

name: 722C36404F3B4DBB57C9.mlw
path: /opt/CAPEv2/storage/binaries/2ed2fe0dda4aff6cc02673e576d9075cf5f20a53590ab002d0a6cce1b44f5329
crc32: F8C4606F
md5: 722c36404f3b4dbb57c90f304878d592
sha1: cf033f305b14375c9c440a20f51db8d0f82f1961
sha256: 2ed2fe0dda4aff6cc02673e576d9075cf5f20a53590ab002d0a6cce1b44f5329
sha512: f6faa39a31e079088aa3691e37e468d254f36a68cb30ca8c5101fe920d392fa68de1fb67fa6a7952ff0df6862db6b9649b68cfd4eb634078c0ac4eae0b053672
ssdeep: 98304:sDqPoBhz1aRxcSUDk36SAEdhvxWa9P593RzPfwo0:sDqPe1Cxcxk3ZAEUadzRLfw9
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15006224CF67C4138D87708B2E27B461C45AEAAFCCF5DC40E62B4F1A53D03D5A69A6D0A
sha3_384: 9800567a8119154c947482f30314fcb4086d5c23d84b5877fd07bb3d5a699374074c5c366bf0b9af81dd99b7f625a144
ep_bytes: 33c0c208000000000d0a0d0a54686973
timestamp: 2008-01-01 08:55:28

Version Info:

0: [No Data]

Ransom.Wanacry.S1670343 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.48269087
FireEyeGeneric.mg.722c36404f3b4dbb
CAT-QuickHealRansom.Wanacry.S1670343
ALYacTrojan.GenericKD.48269087
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforRansom.Win32.Wannacrypt_0.se2
CrowdStrikewin/malicious_confidence_100% (D)
BaiduWin32.Worm.Rbot.a
VirITTrojan.Win32.WannaCry.B
CyrenW32/SuspPack.AA.gen!Eldorado
SymantecRansom.Wannacry
APEXMalicious
ClamAVWin.Ransomware.Wanna-9769986-0
BitDefenderTrojan.GenericKD.48269087
AvastSf:WNCryLdr-A [Trj]
TencentWin32.Trojan.Ransomlocker.Aeee
Ad-AwareTrojan.GenericKD.48269087
SophosGeneric ML PUA (PUA)
DrWebTrojan.Encoder.11432
ZillyaTrojan.RansomKD.Win32.131
McAfee-GW-EditionBehavesLike.Win32.Generic.wc
EmsisoftTrojan.GenericKD.48269087 (B)
SentinelOneStatic AI – Malicious PE
GDataTrojan.GenericKD.48269087
JiangminTrojanSpy.OnLineGames.hia
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASCommon.E0
MicrosoftTrojan:Script/Phonzy.A!ml
CynetMalicious (score: 100)
McAfeeTrojan-FOIM!722C36404F3B
MAXmalware (ai score=83)
VBA32Hoax.Wanna
MalwarebytesRansom.WannaCrypt
RisingTrojan.Kryptik!1.AA23 (RDMK:cmRtazomjxDwyQiT8LvQahRSRaN3)
IkarusTrojan-Ransom.WannaCrypt
eGambitTrojan.Generic
FortinetW32/Agent.D13E!tr
AVGSf:WNCryLdr-A [Trj]
Cybereasonmalicious.04f3b4
MaxSecureTrojan.Malware.121218.susgen

How to remove Ransom.Wanacry.S1670343?

Ransom.Wanacry.S1670343 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment