Ransom

Ransom:Win64/Nemty.STA malicious file

Malware Removal

The Ransom:Win64/Nemty.STA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:Win64/Nemty.STA virus can do?

  • Presents an Authenticode digital signature

How to determine Ransom:Win64/Nemty.STA?


File Info:

crc32: F54A3C9E
md5: f9d28f3d052718588396c4e9901a95df
name: F9D28F3D052718588396C4E9901A95DF.mlw
sha1: 7c120db30a9ef055c0d41ab5efeaaf93dce5742e
sha256: 511fee839098dfa28dd859ffd3ece5148be13bfb83baa807ed7cac2200103390
sha512: 49dba565188474dc5c6b3c22207ee3c5c75fd28e9264710ea65c92e93a8f8dfb85d66da50ebccfa907307c86266c9a97a76e0c9b01ecd62711d9232c0057aa32
ssdeep: 49152:yrSS54eG7Y4z2aNAmF7SdoL5fXtrwrPiRnmUM:eSS54euNN8iqbJ
type: PE32+ executable (console) x86-64 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Ransom:Win64/Nemty.STA also known as:

K7AntiVirusTrojan ( 0057b5051 )
DrWebTrojan.Encoder.33945
CynetMalicious (score: 99)
McAfeeArtemis!F9D28F3D0527
CylanceUnsafe
SangforRansom.Win32.SuspFile.k
AlibabaRansom:Win64/Nemty.19b49a2a
K7GWTrojan ( 0057b5051 )
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Filecoder.Nemty.M
AvastWin64:DangerousSig [Trj]
KasperskyTrojan-Ransom.Win32.SuspFile.k
BitDefenderTrojan.GenericKD.36895898
ViRobotTrojan.Win32.Z.Nemty.3508576
MicroWorld-eScanTrojan.GenericKD.36895898
Ad-AwareTrojan.GenericKD.36895898
SophosMal/Generic-S + Troj/Ransom-GHJ
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom.Win64.NEFILIM.SMA
McAfee-GW-EditionArtemis!Trojan
FireEyeTrojan.GenericKD.36895898
EmsisoftTrojan.GenericKD.36895898 (B)
JiangminTrojan.Shelma.geq
AviraHEUR/AGEN.1141502
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win64/Nemty.STA
AegisLabTrojan.Win32.Agent.j!c
GDataWin64.Trojan.Agent.J4EXWS
AhnLab-V3Malware/Win.Ransom.R420538
MAXmalware (ai score=82)
MalwarebytesMalware.AI.1323048763
PandaTrj/CI.A
TrendMicro-HouseCallRansom.Win64.NEFILIM.SMA
RisingRansom.Agent!8.6B7 (CLOUD)
IkarusTrojan-Ransom.Nemty
FortinetW32/Filecoder_Nemty.M!tr
AVGWin64:DangerousSig [Trj]
Paloaltogeneric.ml

How to remove Ransom:Win64/Nemty.STA?

Ransom:Win64/Nemty.STA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment