Ransom Trojan

Trojan-Ransom.Win32.Spora.ath removal tips

Malware Removal

The Trojan-Ransom.Win32.Spora.ath is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Spora.ath virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.

How to determine Trojan-Ransom.Win32.Spora.ath?


File Info:

crc32: 0D2AD4BF
md5: 7ef79a28285a3d8d4fd0f1584209ad6e
name: 7EF79A28285A3D8D4FD0F1584209AD6E.mlw
sha1: f25296b9805acd2f1acf8b34c8631672e6edba3c
sha256: 3953933c402c1f7de937ff1b294446d162d53942fe9f1a05b7b0d59b8da81492
sha512: f92f1f064456056a2f690fd20d4265f1a37eab098fe10bd9672df2899cce6267833ffbb43249058559e5094ac3e55e56e220af697459d356f449540ad9b4cdcc
ssdeep: 768:PfWnMieYBGIbReexfpquDXgm2DbHiF/lOTRRYO+fmVTqZSY99sBjBnE7:nHYBJbY2fpdoHG/l4RH5qZSY99sfnS
type: MS-DOS executable, MZ for MS-DOS

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Spora.ath also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00502a2c1 )
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop7.18922
CynetMalicious (score: 100)
CAT-QuickHealRansom.Exxroute.D3
ALYacTrojan.GenericKD.43873412
CylanceUnsafe
ZillyaTrojan.Spora.Win32.612
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Spora.1d062806
K7GWTrojan ( 00502a2c1 )
Cybereasonmalicious.8285a3
CyrenW32/Trojan.URAI-6857
SymantecRansom.Cerber
ESET-NOD32Win32/Filecoder.Spora.A
APEXMalicious
AvastWin32:Filecoder-AY [Trj]
ClamAVWin.Ransomware.Cerber-7641286-0
KasperskyTrojan-Ransom.Win32.Spora.ath
BitDefenderTrojan.GenericKD.43873412
NANO-AntivirusTrojan.Win32.Filecoder.elzobo
MicroWorld-eScanTrojan.GenericKD.43873412
TencentWin32.Trojan.Raas.Auto
Ad-AwareTrojan.GenericKD.43873412
SophosMal/Generic-S + Mal/Elenoocka-E
ComodoTrojWare.Win32.Crypt.C@7vajd0
BitDefenderThetaGen:NN.ZexaF.34608.cmW@aqv@l3k
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_SPORA.F117C1
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.pc
FireEyeGeneric.mg.7ef79a28285a3d8d
EmsisoftTrojan.GenericKD.43873412 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Ransom.Gen
KingsoftWin32.Heur.KVMH008.a.(kcloud)
MicrosoftRansom:Win32/Spora.A
ArcabitTrojan.Generic.D29D7484
AegisLabTrojan.Win32.Generic.l42y
GDataTrojan.GenericKD.43873412
AhnLab-V3Malware/Win32.Ransom_.C1825042
Acronissuspicious
McAfeeArtemis!7EF79A28285A
MAXmalware (ai score=88)
VBA32Trojan.Tiggre
MalwarebytesMalware.Heuristic.1003
PandaTrj/CI.A
TrendMicro-HouseCallRansom_SPORA.F117C1
RisingTrojan.Ransom.GlobeImposter!1.AF70 (CLOUD)
IkarusTrojan-Ransom.Cerber
FortinetW32/Matrix.2FFD!tr.ransom
AVGWin32:Filecoder-AY [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Spora.HxIBINsA

How to remove Trojan-Ransom.Win32.Spora.ath?

Trojan-Ransom.Win32.Spora.ath removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment