Ransom

How to remove “Ransom:Win32/Conti!MTB”?

Malware Removal

The Ransom:Win32/Conti!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:Win32/Conti!MTB virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Ransom:Win32/Conti!MTB?


File Info:

crc32: 0F6A8C88
md5: d3472c63da9bb4a24a03c485312f34bc
name: D3472C63DA9BB4A24A03C485312F34BC.mlw
sha1: 86c9ee65e6e39910b52de15587137f7478bdca54
sha256: 61dd6a0b2870d62f56c7fe0039d42bf5351588f927267fe7b4ee0761872a3b20
sha512: 7480dabbc628bbb780cf07d815fde65b36dd2906ab8f9cb7e71449a25819aaee51a86985cab62ed166e37f2dab9b2d3ad832c2e6351438720967060ad2d6438b
ssdeep: 3072:P/P4Lq8ZVYAYImjwHfFRnRUkqoLHX93SMmLN7EMwzbwKld/AQAE2rNPwwWA0ig7:PX4LqWviUH9UkqoLHXEj9xwzkKrAEaF
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ransom:Win32/Conti!MTB also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Mikey.116931
McAfeeRansom-Conti!D3472C63DA9B
MalwarebytesRansom.Conti
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Generic.j!c
K7AntiVirusTrojan ( 0057027e1 )
BitDefenderGen:Variant.Mikey.116931
K7GWTrojan ( 0057027e1 )
Cybereasonmalicious.5e6e39
ArcabitTrojan.Mikey.D1C8C3
CyrenW32/Trojan.QGRT-3944
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Filecoder.Conti.F
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan-Ransom.Win32.Generic
AlibabaRansom:Win32/Conti.17b85a4f
NANO-AntivirusVirus.Win32.Gen.ccmw
TencentWin32.Trojan.Filecoder.Wozf
Ad-AwareGen:Variant.Mikey.116931
SophosMal/Generic-S
ComodoMalware@#1cncuna14jq1y
F-SecureHeuristic.HEUR/AGEN.1130813
DrWebTrojan.Encoder.32823
ZillyaTrojan.Encoder.Win32.1837
TrendMicroRansom.Win32.CONTI.SM.hp
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
FireEyeGeneric.mg.d3472c63da9bb4a2
EmsisoftGen:Variant.Mikey.116931 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Generic.gfrtg
AviraHEUR/AGEN.1130813
MAXmalware (ai score=100)
Antiy-AVLTrojan[Ransom]/Win32.Conti
MicrosoftRansom:Win32/Conti!MTB
ViRobotTrojan.Win32.Z.Conti.189952.C
ZoneAlarmHEUR:Trojan-Ransom.Win32.Generic
GDataGen:Variant.Mikey.116931
CynetMalicious (score: 85)
VBA32BScope.Trojan.Mansabo
ALYacTrojan.Ransom.Conti
CylanceUnsafe
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom.Win32.CONTI.SM.hp
RisingRansom.Encoder!8.FFD4 (TFE:5:c1aKpJtYPZJ)
YandexTrojan.Filecoder!RV5lbAybTBk
IkarusTrojan-Ransom.Conti
MaxSecureTrojan.Malware.10307848.susgen
FortinetW32/Conti.F!tr.ransom
BitDefenderThetaGen:NN.ZexaF.34670.lyW@aONqVEgi
AVGWin32:RansomX-gen [Ransom]
AvastWin32:RansomX-gen [Ransom]
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Trojan.Ransom.793

How to remove Ransom:Win32/Conti!MTB?

Ransom:Win32/Conti!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment