Ransom

Ransom:Win64/Vovalex.MK!MTB malicious file

Malware Removal

The Ransom:Win64/Vovalex.MK!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:Win64/Vovalex.MK!MTB virus can do?

  • The binary likely contains encrypted or compressed data.

How to determine Ransom:Win64/Vovalex.MK!MTB?


File Info:

crc32: C1EB47A9
md5: cc410e6c24d8bd6d645029dbb08cfc79
name: CC410E6C24D8BD6D645029DBB08CFC79.mlw
sha1: 4dfbc84564abfd88c205914b7eb8acd89e22c558
sha256: e9ee500bcceeb9608800148f7c750e5d8676fb515f0decde33cc8b419f4e5b49
sha512: e5a11abf8b12f803ddfae2509c475ad9babf6c5039e2963cc68dd1dc457c12bec2d1e531e719d631b1c45ddc19f5f841ef60972bffc3ab253cb96978d9ac4db8
ssdeep: 98304:dVeNBpTBnOzs8JG5qDR4z6XzZRbG7c/X44Sk+hRF8rk+3V2kLIRnB:Xg9Ozh+qq8RbG7KX446hRaR2x
type: PE32+ executable (GUI) x86-64 (stripped to external PDB), for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2020 Alexsander Roshal
FileVersion: 6.00
CompanyName: Alexsander Roshal
Comments: This installation was built with Inno Setup.
ProductName: WinRAR
ProductVersion: 6.00
FileDescription: WinRAR Setup
Translation: 0x0409 0x04e4

Ransom:Win64/Vovalex.MK!MTB also known as:

MicroWorld-eScanTrojan.GenericKD.36195552
CAT-QuickHealTrojanransom.Gen
Qihoo-360Win32/Trojan.Ransom.6f8
ALYacTrojan.Ransom.Filecoder
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Gen.j!c
K7AntiVirusTrojan ( 005767981 )
BitDefenderTrojan.GenericKD.36195552
K7GWTrojan ( 005767981 )
CyrenW64/Trojan.KXWO-4925
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win64/Filecoder.Vovalex.A
KasperskyTrojan-Ransom.Win32.Gen.znu
AlibabaRansom:Win64/Vovalex.26ff4a39
ViRobotTrojan.Win32.Z.Vovalex.5633536
RisingRansom.Vovalex!1.D18A (CLASSIC)
Ad-AwareTrojan.GenericKD.36195552
SophosMal/Generic-S
F-SecureTrojan.TR/DelFile.aqire
DrWebTrojan.MulDrop16.9806
ZillyaTrojan.Generic.Win32.1322138
TrendMicroRansom_Vovalex.R004C0DAN21
McAfee-GW-EditionArtemis!Trojan
FireEyeTrojan.GenericKD.36195552
EmsisoftTrojan-Ransom.Vovalex (A)
GDataTrojan.GenericKD.36195552
AviraTR/DelFile.aqire
MAXmalware (ai score=99)
KingsoftWin32.Troj.Undef.(kcloud)
GridinsoftRansom.Win64.Vovalex.sd!s1
ArcabitTrojan.Generic.D2284CE0
ZoneAlarmTrojan-Ransom.Win32.Gen.znu
MicrosoftRansom:Win64/Vovalex.MK!MTB
CynetMalicious (score: 85)
AhnLab-V3Malware/Gen.RL_Reputation.R364324
McAfeeArtemis!CC410E6C24D8
VBA32TrojanRansom.Gen
PandaTrj/CI.A
TrendMicro-HouseCallRansom_Vovalex.R004C0DAN21
TencentWin32.Trojan.Gen.Szkz
IkarusTrojan-Ransom.Vovalex
FortinetW32/Gen.ZNU!tr.ransom
AVGWin64:Trojan-gen
AvastWin64:Trojan-gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Ransom:Win64/Vovalex.MK!MTB?

Ransom:Win64/Vovalex.MK!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment