Ransom

Ransom:Win32/Ako!MSR removal

Malware Removal

The Ransom:Win32/Ako!MSR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:Win32/Ako!MSR virus can do?

  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • A process created a hidden window
  • Creates an autorun.inf file
  • Uses Windows utilities for basic functionality
  • Attempts to delete volume shadow copies
  • Modifies boot configuration settings
  • Creates a hidden or system file
  • Clears Windows events or logs
  • Creates a copy of itself
  • Attempts to disable UAC
  • Attempts to modify UAC prompt behavior
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Ransom:Win32/Ako!MSR?


File Info:

crc32: B4C9774F
md5: 0f93c86091e62189d892bfaa98805202
name: ww.txt
sha1: e4fdb937b3a72f7cd48272250cee908f865a5834
sha256: 794b9e959369ba3bf9cf66d535da0e04fd2c13775a27a7e08ae43c7430c72050
sha512: 2568d55ceb8c8e914941bfe98cc469790856344fd82be8624e17407e2159ad035a75621e565440b2b8b9b4791e21e16dc3122435c9e03d0280b3f8b7ca1a87c7
ssdeep: 12288:cPJ4UoTYQivI2qZ7aSgLwkFVpzUvest4ZEbjJLuQJVoM7:JfTYVQ2qZ7aSgLwuVfstRJL/YM
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ransom:Win32/Ako!MSR also known as:

BkavW32.AIDetectVM.malware
DrWebTrojan.DownLoader33.34694
MicroWorld-eScanGeneric.Ransom.MedusaLocker.942644D7
Qihoo-360HEUR/QVM20.1.B9E5.Malware.Gen
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
BitDefenderGeneric.Ransom.MedusaLocker.942644D7
Cybereasonmalicious.7b3a72
TrendMicroRansom.Win32.MEDUSALOCKER.SMTH
BitDefenderThetaGen:NN.ZexaF.34106.QuW@aK8T6Ili
APEXMalicious
ClamAVWin.Ransomware.Generic-6545091-0
GDataWin32.Trojan-Ransom.Filecoder.BO
KasperskyTrojan.Win32.DelShad.dax
RisingRansom.Medusa!1.C21A (C64:YzY0Oii72Wt/PrBD)
Ad-AwareGeneric.Ransom.MedusaLocker.942644D7
EmsisoftGeneric.Ransom.MedusaLocker.942644D7 (B)
F-SecureHeuristic.HEUR/AGEN.1103466
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Trojan.jh
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.0f93c86091e62189
IkarusTrojan-Ransom.Medusalocker
AviraHEUR/AGEN.1103466
Antiy-AVLTrojan[Ransom]/Win32.Ako
Endgamemalicious (high confidence)
ArcabitGeneric.Ransom.MedusaLocker.942644D7
ZoneAlarmTrojan.Win32.DelShad.dax
MicrosoftRansom:Win32/Ako!MSR
Acronissuspicious
ALYacGeneric.Ransom.MedusaLocker.942644D7
MAXmalware (ai score=84)
MalwarebytesRansom.Medusa
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Filecoder.MedusaLocker.C
TrendMicro-HouseCallRansom.Win32.MEDUSALOCKER.SMTH
eGambitUnsafe.AI_Score_96%
FortinetW32/Filecoder.NYA!tr.ransom
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Ransom:Win32/Ako!MSR?

Ransom:Win32/Ako!MSR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment