Ransom

Ransom:Win32/ContiCrypt.MFP!MTB (file analysis)

Malware Removal

The Ransom:Win32/ContiCrypt.MFP!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:Win32/ContiCrypt.MFP!MTB virus can do?

    How to determine Ransom:Win32/ContiCrypt.MFP!MTB?

    
    

    File Info:

    crc32: 4DC150C2
    md5: 90c449800919d3905466e7baf739ad6d
    name: 90C449800919D3905466E7BAF739AD6D.mlw
    sha1: 9247da6bc1064ce559e3cb55f32b446377def75a
    sha256: a79dcac3753c055d7b46b5ffa27b1b4bb55516180966f20a2878698b81638137
    sha512: 993974d64d983868d1f80c245ccaf079dddebdfd2420016ca320c63c626ed98e821780934b17eec16d1b4fa30decc2d1aba05aa8645fafa7b3b20a870224057d
    ssdeep: 3072:27M4RqFhjgGQaocfjp6LoaTGrfeFL5wqKJyqWrduvyOVjMAkz/Cmvlb:54RqXgGVocfYoaTgaFXqWBuqBTbvlb
    type: PE32+ executable (DLL) (GUI) x86-64, for MS Windows

    Version Info:

    0: [No Data]

    Ransom:Win32/ContiCrypt.MFP!MTB also known as:

    DrWebTrojan.MulDrop17.61452
    ClamAVWin.Ransomware.Razy-9874372-0
    ALYacGen:Variant.Razy.844481
    ZillyaTrojan.Filecoder.Win32.19528
    AlibabaRansom:Win32/Cryptor.813759df
    K7GWTrojan ( 0057abe41 )
    K7AntiVirusTrojan ( 0057abe41 )
    SymantecTrojan.Gen.2
    ESET-NOD32a variant of Win32/Filecoder.Conti.P
    APEXMalicious
    AvastWin64:RansomX-gen [Ransom]
    CynetMalicious (score: 100)
    KasperskyTrojan-Ransom.Win32.Cryptor.eeo
    BitDefenderGen:Variant.Razy.844481
    MicroWorld-eScanGen:Variant.Razy.844481
    TencentMalware.Win32.Gencirc.11c0949e
    Ad-AwareGen:Variant.Razy.844481
    SophosMal/Generic-R + Troj/Conti-C
    ComodoMalware@#11tmrfzm5sl6k
    TrendMicroRansom.Win64.CONTI.SM.hp
    McAfee-GW-EditionRansom-Conti!90C449800919
    FireEyeGeneric.mg.90c449800919d390
    EmsisoftGen:Variant.Razy.844481 (B)
    WebrootW32.Ransom.Conti
    AviraTR/Strictor.oftso
    Antiy-AVLTrojan/Generic.ASMalwS.33397BB
    KingsoftWin32.Troj.Undef.(kcloud)
    MicrosoftRansom:Win32/ContiCrypt.MFP!MTB
    ArcabitTrojan.Razy.DCE2C1
    GDataGen:Variant.Razy.844481
    AhnLab-V3Ransomware/Win.Conti.R374597
    McAfeeRansom-Conti!90C449800919
    MAXmalware (ai score=83)
    MalwarebytesRansom.Conti
    PandaTrj/CI.A
    TrendMicro-HouseCallRansom.Win64.CONTI.SM.hp
    YandexTrojan.Cryptor!QlExUifsfOw
    IkarusTrojan-Ransom.Conti
    MaxSecureTrojan.Malware.117590845.susgen
    FortinetW64/BazarLoader.AD!tr
    AVGWin64:RansomX-gen [Ransom]
    Paloaltogeneric.ml
    Qihoo-360Win64/Ransom.Cryptor.HggASYEA

    How to remove Ransom:Win32/ContiCrypt.MFP!MTB?

    Ransom:Win32/ContiCrypt.MFP!MTB removal tool
    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.

    About the author

    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Leave a Comment