Ransom

Ransom:Win32/Mafia.A removal instruction

Malware Removal

The Ransom:Win32/Mafia.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:Win32/Mafia.A virus can do?

    Related domains:

    z.whorecord.xyz
    a.tomx.xyz

    How to determine Ransom:Win32/Mafia.A?

    
    

    File Info:

    crc32: CBA59185
    md5: 0776e348313c7680db86ed924cff10b8
    name: 0776E348313C7680DB86ED924CFF10B8.mlw
    sha1: e5491583cb8688ac5370af2c2dc666258654004a
    sha256: 6a443a92c7896b28ae843ed6478cc394122b05cd53bcc5b1a124c96bd756c4c9
    sha512: 392f49809da02574533d98ad4fcaaf1d5da22c55fd4a05ed84c277762ae88bd09aeda5dca46b58d119cae802beefbcb44f14f0001668a1b6b901abfc16b708e3
    ssdeep: 1536:RVCQbKPwUrq3BGwQtwc+mjXZflRbyAvhqFYUyGO1gQswNjY:RVCPd4B+7T4AvhSAGOaINY
    type: PE32 executable (GUI) Intel 80386, for MS Windows

    Version Info:

    0: [No Data]

    Ransom:Win32/Mafia.A also known as:

    BkavW32.AIDetect.malware2
    K7AntiVirusTrojan ( 0053a02a1 )
    Elasticmalicious (high confidence)
    DrWebTrojan.Encoder.25837
    CynetMalicious (score: 100)
    ALYacTrojan.Ransom.Mafia
    CylanceUnsafe
    ZillyaTrojan.Filecoder.Win32.8218
    SangforSuspicious.Win32.Save.a
    AlibabaRansom:Win32/Mafia.310b19bb
    K7GWTrojan ( 0053a02a1 )
    Cybereasonmalicious.8313c7
    SymantecRansom.Locky
    ESET-NOD32a variant of Win32/Filecoder.NRQ
    APEXMalicious
    AvastWin32:Malware-gen
    BitDefenderGen:Heur.Ransom.REntS.Gen.1
    NANO-AntivirusTrojan.Win32.Encoder.fhrpbe
    ViRobotTrojan.Win32.Ransom.100864
    MicroWorld-eScanGen:Heur.Ransom.REntS.Gen.1
    TencentMalware.Win32.Gencirc.114cf82d
    Ad-AwareGen:Heur.Ransom.REntS.Gen.1
    SophosMal/Generic-R + Troj/Mobran-A
    ComodoMalware@#ysg26jv4psox
    BitDefenderThetaGen:NN.ZexaF.34686.guW@a8EYWGdi
    VIPRETrojan.Win32.Generic!BT
    TrendMicroRansom_MAFYA.THHADAH
    McAfee-GW-EditionBehavesLike.Win32.Dropper.nh
    FireEyeGeneric.mg.0776e348313c7680
    EmsisoftGen:Heur.Ransom.REntS.Gen.1 (B)
    WebrootW32.Ransom.Gen
    AviraTR/Redcap.yzetd
    MicrosoftRansom:Win32/Mafia.A
    ArcabitTrojan.Ransom.REntS.Gen.1
    AegisLabTrojan.Win32.Rents.4!c
    GDataWin32.Trojan-Ransom.Mafia.A
    AhnLab-V3Trojan/Win32.Ransom.R234130
    McAfeeArtemis!0776E348313C
    VBA32BScope.Trojan.Encoder
    MalwarebytesRansom.Mafia
    PandaTrj/GdSda.A
    TrendMicro-HouseCallRansom_MAFYA.THHADAH
    RisingTrojan.Win32.Ransom.ec (CLOUD)
    YandexTrojan.GenAsa!S46VYQ5/rK4
    IkarusTrojan-Ransom.FileCrypter
    FortinetW32/Filecoder.NRQ!tr.ransom
    AVGWin32:Malware-gen

    How to remove Ransom:Win32/Mafia.A?

    Ransom:Win32/Mafia.A removal tool
    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.

    About the author

    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Leave a Comment