Categories: Ransom

Ransom:Win64/Ryuk.PB!MTB malicious file

The Ransom:Win64/Ryuk.PB!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:Win64/Ryuk.PB!MTB virus can do?

    How to determine Ransom:Win64/Ryuk.PB!MTB?

    
    

    File Info:

    crc32: 976101E5md5: 2ca346971318fef0ba6bc73a6c3ea09bname: 2CA346971318FEF0BA6BC73A6C3EA09B.mlwsha1: d89a3b5ecaa908adf3d0eb164fe66a5462d6ed06sha256: 54b3044b8c1c8a315fb33eb3b832cf6ba13856756e82ebc363e094bfce9b8d99sha512: 6e6ad32d51105d3b69dfc221f4945c260e8f9a786be597fbe44dedf17bdcb7b91375522da4e8b1b50820e98e0d283357ee484665ce7a8f7540dfe8a8c2925889ssdeep: 3072:Q4EKlYeS6GTPkra8Og8/6jhQQF40uUNCKcjricD:DKTIOgOOy8erictype: PE32+ executable (GUI) x86-64, for MS Windows

    Version Info:

    0: [No Data]

    Ransom:Win64/Ryuk.PB!MTB also known as:

    Elastic malicious (high confidence)
    Cynet Malicious (score: 99)
    CAT-QuickHeal Ransom.Ryuk.S12119064
    ALYac Gen:Variant.Mikey.108636
    Cylance Unsafe
    CrowdStrike win/malicious_confidence_60% (D)
    Cybereason malicious.71318f
    Symantec Ransom.Ryuk
    ESET-NOD32 a variant of Win64/Filecoder.Ryuk.G
    APEX Malicious
    Avast Win64:RansomX-gen [Ransom]
    ClamAV Win.Ransomware.Ulise-7594825-0
    Kaspersky HEUR:Trojan-Ransom.Win32.Generic
    BitDefender Gen:Variant.Mikey.108636
    MicroWorld-eScan Gen:Variant.Mikey.108636
    Ad-Aware Gen:Variant.Mikey.108636
    Sophos ML/PE-A + Troj/Ryuk-AC
    TrendMicro Ransom.Win64.RYUK.SMTH
    McAfee-GW-Edition BehavesLike.Win64.Injector.ch
    FireEye Generic.mg.2ca346971318fef0
    Emsisoft Gen:Variant.Mikey.108636 (B)
    Avira HEUR/AGEN.1127994
    Microsoft Ransom:Win64/Ryuk.PB!MTB
    Arcabit Trojan.Mikey.D1A85C
    ZoneAlarm HEUR:Trojan-Ransom.Win32.Generic
    GData Gen:Variant.Mikey.108636
    AhnLab-V3 Trojan/Win64.Ransom.C4008505
    McAfee Ransomware-GWE!2CA346971318
    MAX malware (ai score=84)
    Malwarebytes Ransom.Ryuk
    TrendMicro-HouseCall Ransom.Win64.RYUK.SMTH
    Yandex Trojan.GenAsa!vcfn5mPcGuo
    Ikarus Trojan-Ransom.Ryuk
    Fortinet W64/Filecoder.DD85!tr.ransom
    AVG Win64:RansomX-gen [Ransom]

    How to remove Ransom:Win64/Ryuk.PB!MTB?

    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.
    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Recent Posts

    What is “Malware.AI.1232470033”?

    The Malware.AI.1232470033 is considered dangerous by lots of security experts. When this infection is active,…

    1 hour ago

    Tedy.527363 removal guide

    The Tedy.527363 is considered dangerous by lots of security experts. When this infection is active,…

    2 hours ago

    Should I remove “Zusy.472379 (B)”?

    The Zusy.472379 (B) is considered dangerous by lots of security experts. When this infection is…

    2 hours ago

    Win32.Morto.A removal tips

    The Win32.Morto.A is considered dangerous by lots of security experts. When this infection is active,…

    2 hours ago

    Win32/Downloader.Agent.CP potentially unwanted information

    The Win32/Downloader.Agent.CP potentially unwanted is considered dangerous by lots of security experts. When this infection…

    2 hours ago

    Trojan:MSIL/Zusy.PTHT!MTB removal tips

    The Trojan:MSIL/Zusy.PTHT!MTB is considered dangerous by lots of security experts. When this infection is active,…

    2 hours ago