Ransom

Ransom:Win32/Flamingo.SBR!MSR information

Malware Removal

The Ransom:Win32/Flamingo.SBR!MSR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:Win32/Flamingo.SBR!MSR virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine Ransom:Win32/Flamingo.SBR!MSR?


File Info:

crc32: 64F0BB44
md5: d7e62276a016b8a58ddfe44bb1441832
name: D7E62276A016B8A58DDFE44BB1441832.mlw
sha1: 6c4ca359d8fe167e9143ff71d03f599703f166e3
sha256: 157757386e217f27442eedfe2e14b340d04e64dae6448a60eec3330eae8cac93
sha512: d836971bbdc1701869726d6fd8a2b148e90879425fd27e37e80aef6b515356560651abc000ea40eb5cc9580ab55bc8c9de5c4cfec8bc4a8aa800627c7de39669
ssdeep: 12288:/MsXZD7jvQIdishpEBuKmfcTSH0qPE92yC2OZUAARA+9c9cs2w+Lag0sB4np4yb:07IcdBbmfLH0R909Z4RkCwvuEt
type: PE32 executable (console) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Ransom:Win32/Flamingo.SBR!MSR also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.671790
FireEyeGeneric.mg.d7e62276a016b8a5
CAT-QuickHealTrojanransom.Generic
McAfeeGenericRXAA-FA!D7E62276A016
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforRansom.Win32.Generic.ky
K7AntiVirusTrojan ( 00575ca81 )
BitDefenderGen:Variant.Razy.671790
K7GWTrojan ( 00575ca81 )
CrowdStrikewin/malicious_confidence_80% (W)
BitDefenderThetaGen:NN.ZexaF.34590.6mHfamDc3nbi
CyrenW32/Busky.B.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
KasperskyHEUR:Trojan-Ransom.Win32.Generic
AlibabaRansom:Win32/Flamingo.000f7b13
NANO-AntivirusTrojan.Win32.Filecoder.ihpbxm
RisingTrojan.Filecoder!8.68 (CLOUD)
Ad-AwareGen:Variant.Razy.671790
EmsisoftGen:Variant.Razy.671790 (B)
ComodoMalware@#30x9qaxs9yc23
F-SecureHeuristic.HEUR/AGEN.1135904
TrendMicroRansom_Flamingo.R002C0DB121
McAfee-GW-EditionBehavesLike.Win32.Trojan.dc
SophosMal/Generic-S
IkarusTrojan-Ransom.Flamingo
JiangminTrojan.DMR.d
MaxSecureTrojan.Malware.300983.susgen
AviraHEUR/AGEN.1135904
MicrosoftRansom:Win32/Flamingo.SBR!MSR
ArcabitTrojan.Razy.DA402E
ZoneAlarmHEUR:Trojan-Ransom.Win32.Generic
GDataGen:Variant.Razy.671790
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Crysis.C3865795
VBA32TrojanRansom.Flamingo
ALYacGen:Variant.Razy.671790
MAXmalware (ai score=85)
MalwarebytesMalware.AI.4280668890
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Filecoder.Flamingo.C
TrendMicro-HouseCallRansom_Flamingo.R002C0DB121
SentinelOneStatic AI – Suspicious PE
eGambitUnsafe.AI_Score_53%
FortinetW32/Filecoder.33CD!tr.ransom
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.6a016b
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HwsBAysA

How to remove Ransom:Win32/Flamingo.SBR!MSR?

Ransom:Win32/Flamingo.SBR!MSR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment