Ransom

How to remove “Ransom:Win32/Maoloa.KA”?

Malware Removal

The Ransom:Win32/Maoloa.KA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:Win32/Maoloa.KA virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Ransom:Win32/Maoloa.KA?


File Info:

crc32: C0951DE1
md5: a7d58a3a9f2ff3e1fefd69ed12cceeb1
name: A7D58A3A9F2FF3E1FEFD69ED12CCEEB1.mlw
sha1: 2fb79bef67a697450313f3d13ef121f9e6bd96a8
sha256: 30303b663e0b7b9824cc59298b36f824b607b4fb85de53af6aac3a023d895513
sha512: d22f6acf66fa9e2f97026f934a782175c61de393ee5a21c3e94c337939dc33dd39f104a1cde445d034abb29846b0577b3804762f45abdec554cd4f2d8e95ae25
ssdeep: 12288:Y5wNnMlwLsockASSoNDHyAWO2eB87G9/ik4p5l3Hacrtuqax:vNYE9ckIoyOwGtKp3HwB
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: HASHSTREM
Assembly Version: 307.0.0.0
InternalName: Hakbdyww7.exe
FileVersion: 307.0.0.0
CompanyName: HashStrem, inc.
LegalTrademarks: HASHSTREM
Comments: HASHSTREM
ProductName: HASHSTREM CENTER
ProductVersion: 307.0.0.0
FileDescription: HASHSTREM
OriginalFilename: Hakbdyww7.exe

Ransom:Win32/Maoloa.KA also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.35282137
FireEyeGeneric.mg.a7d58a3a9f2ff3e1
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
Qihoo-360Generic/Trojan.f5a
ALYacTrojan.Ransom.Filecoder
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 005741df1 )
BitDefenderTrojan.GenericKD.35282137
K7GWTrojan ( 005741df1 )
Cybereasonmalicious.f67a69
BitDefenderThetaGen:NN.ZemsilF.34700.Sm0@auE2jkn
CyrenW32/Trojan.XTTT-1147
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan.MSIL.DelShad.gen
AlibabaTrojan:Win32/Kryptik.ali2000016
ViRobotTrojan.Win32.Z.Ransom.727040
Ad-AwareTrojan.GenericKD.35282137
SophosMal/Generic-S
ComodoMalware@#1lguk96q727uz
F-SecureTrojan.TR/AD.MaoloaRansom.oftsb
DrWebTrojan.Siggen11.55901
ZillyaTrojan.DelShad.Win32.838
TrendMicroTROJ_GEN.R049C0GKL20
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
EmsisoftTrojan.GenericKD.35282137 (B)
IkarusTrojan-Ransom.GlobeImposter
WebrootW32.Malware.Gen
AviraTR/AD.MaoloaRansom.oftsb
MAXmalware (ai score=100)
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/Maoloa.KA
GridinsoftRansom.Win32.Wacatac.ns
ArcabitTrojan.Generic.D21A5CD9
ZoneAlarmHEUR:Trojan.MSIL.DelShad.gen
GDataTrojan.GenericKD.35282137
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.C4227437
McAfeeRDN/Ransom
VBA32TScope.Trojan.MSIL
MalwarebytesRansom.FileCryptor
PandaTrj/GdSda.A
ESET-NOD32a variant of Generik.JLYLSKQ
TrendMicro-HouseCallTROJ_GEN.R049C0GKL20
TencentWin32.Trojan.Inject.Auto
YandexTrojan.DelShad!s7ZsCppug0E
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_100%
FortinetMSIL/Kryptik.YII!tr
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen

How to remove Ransom:Win32/Maoloa.KA?

Ransom:Win32/Maoloa.KA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment