Ransom

How to remove “Ransom.XiaoBa.5”?

Malware Removal

The Ransom.XiaoBa.5 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.XiaoBa.5 virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Ransom.XiaoBa.5?


File Info:

crc32: C900AD26
md5: 5d0a20a3c7180c61ce7045efcf80d9e5
name: 5D0A20A3C7180C61CE7045EFCF80D9E5.mlw
sha1: 4d98bd3f6e8932e9ec788bf034b56032ce6757fc
sha256: aeb8715292c43354ed42935f0fddb2f4b7ead7d319079c26d66e4f9db4e03173
sha512: 0769664a3f1af9bf6492053f1f58481050d8e3efd777abc8a5552c257d18a70676e190c96a9469a39afd2a11eb845882a4863265145ac898d195c2cbf39cb5c4
ssdeep: 1536:aytAQwAvBRueZUsc6O9/yAfNDV8wqtrHX:nBvSMUs6/nlp8dtr
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ransom.XiaoBa.5 also known as:

BkavW32.AIDetect.malware2
ALYacGen:Variant.Ransom.XiaoBa.5
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (W)
BitDefenderGen:Variant.Ransom.XiaoBa.5
Cybereasonmalicious.3c7180
APEXMalicious
CynetMalicious (score: 100)
MicroWorld-eScanGen:Variant.Ransom.XiaoBa.5
Ad-AwareGen:Variant.Ransom.XiaoBa.5
BitDefenderThetaGen:NN.ZexaF.34690.guW@amq5V0lb
McAfee-GW-EditionBehavesLike.Win32.Trojan.ch
FireEyeGeneric.mg.5d0a20a3c7180c61
EmsisoftGen:Variant.Ransom.XiaoBa.5 (B)
SentinelOneStatic AI – Suspicious PE
eGambitUnsafe.AI_Score_88%
MicrosoftProgram:Win32/Wacapew.C!ml
ArcabitTrojan.Ransom.XiaoBa.5
GDataGen:Variant.Ransom.XiaoBa.5
McAfeeArtemis!5D0A20A3C718
MAXmalware (ai score=88)

How to remove Ransom.XiaoBa.5?

Ransom.XiaoBa.5 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment