Ransom

Ransom:Win32/Pottieq.A removal instruction

Malware Removal

The Ransom:Win32/Pottieq.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:Win32/Pottieq.A virus can do?

    Related domains:

    z.whorecord.xyz
    a.tomx.xyz
    zur-nette.eu

    How to determine Ransom:Win32/Pottieq.A?

    
    

    File Info:

    crc32: EA3584E4
    md5: 8df43928102277446a309504ccc30847
    name: 8DF43928102277446A309504CCC30847.mlw
    sha1: 501af1b7dfa54768d3c20aecff09a3bce6ca4f55
    sha256: 1df1eb26e26e3326ed0d3d590d7a2147fc33be885945f2689a574340475b01a5
    sha512: f99884cbabb9959e80312f60735af4e97de90d99f177e18caca7c4cfa0e2c109798d7328e8a5e0dd6f7cb1665259eb43db1734595d3c0e92e8cef27ce4b435c0
    ssdeep: 49152:WFM1TnbB1qlJpn9wsDYy3YUG+0Kscvtu7w:UM1TnbB1GwSYrUG+Acvk
    type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

    Version Info:

    0: [No Data]

    Ransom:Win32/Pottieq.A also known as:

    Elasticmalicious (high confidence)
    MicroWorld-eScanGen:Variant.Graftor.417020
    FireEyeGeneric.mg.8df4392810227744
    ALYacGen:Variant.Graftor.417020
    CylanceUnsafe
    ZillyaTrojan.Aura.Win32.244
    SangforRansom.Win32.Aura.anc
    K7AntiVirusTrojan ( 004da4781 )
    BitDefenderGen:Variant.Graftor.417020
    K7GWTrojan ( 004da4781 )
    Cybereasonmalicious.810227
    SymantecML.Attribute.HighConfidence
    APEXMalicious
    AvastWin32:Malware-gen
    CynetMalicious (score: 85)
    KasperskyTrojan-Ransom.Win32.Aura.anc
    AlibabaRansom:Win32/Pottieq.32f93cf4
    NANO-AntivirusTrojan.Win32.Encoder.fhdnaf
    Ad-AwareGen:Variant.Graftor.417020
    EmsisoftGen:Variant.Graftor.417020 (B)
    ComodoMalware@#39pwwxqgunlfv
    F-SecureHeuristic.HEUR/AGEN.1121076
    DrWebTrojan.Encoder.2667
    VIPRETrojan.Win32.Generic!BT
    TrendMicroRansom.Win32.POTTIEQ.SMAL
    McAfee-GW-EditionBehavesLike.Win32.Dropper.th
    SophosMal/Generic-S
    IkarusTrojan-Ransom.FileCrypter
    JiangminTrojanDropper.FrauDrop.annq
    AviraHEUR/AGEN.1121076
    Antiy-AVLTrojan[Ransom]/Win32.Aura
    MicrosoftRansom:Win32/Pottieq.A
    ArcabitTrojan.Graftor.D65CFC
    ZoneAlarmTrojan-Ransom.Win32.Aura.anc
    McAfeeArtemis!8DF439281022
    MAXmalware (ai score=96)
    VBA32Trojan-Ransom.Aura
    MalwarebytesMalware.AI.1999713017
    PandaTrj/CI.A
    ESET-NOD32a variant of Win32/Filecoder.NFQ
    TrendMicro-HouseCallRansom.Win32.POTTIEQ.SMAL
    TencentWin32.Trojan.Aura.Egeu
    YandexTrojan.GenAsa!NQC51oNl304
    FortinetW32/Filecoder.NFQ!tr
    BitDefenderThetaGen:NN.ZexaF.34590.1zW@ae2Qmjhi
    AVGWin32:Malware-gen
    Paloaltogeneric.ml
    Qihoo-360Win32/Ransom.Generic.HgIASOgA

    How to remove Ransom:Win32/Pottieq.A?

    Ransom:Win32/Pottieq.A removal tool
    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.

    About the author

    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Leave a Comment