Ransom Trojan

VHO:Trojan-Ransom.Win32.Spora removal

Malware Removal

The VHO:Trojan-Ransom.Win32.Spora is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VHO:Trojan-Ransom.Win32.Spora virus can do?

  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine VHO:Trojan-Ransom.Win32.Spora?


File Info:

crc32: E5C29604
md5: d36670193b11054604b430cf7c130df6
name: D36670193B11054604B430CF7C130DF6.mlw
sha1: a7dbcf6d3b4933703e12a7d6e313f731fcda8a86
sha256: a93c84beea4bf28565ef25fcbb82c5376a03d9022c24000fa719cac215dec632
sha512: 820c5312b31ffb37f771779113f25defe9326daf6876d18e3b45f7915588b3da3433c39bd7007d0deddab7b87c7699df587e3889cc70bf0fd6e63864e7a55b74
ssdeep: 6144:AMUZ5QsleEvIS9dwAVLm0GlwON5Pr4pK0blaIqGopkZAvemvg9fo+go5eAuDDg0:HUPQ6eEwaV4lwqZOK0AIqGopLRUXKDD3
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

VHO:Trojan-Ransom.Win32.Spora also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0049c2681 )
Elasticmalicious (high confidence)
DrWebTrojan.Siggen6.23087
CynetMalicious (score: 99)
CAT-QuickHealTrojan.Boaxxe
ALYacTrojan.GenericKD.30575586
CylanceUnsafe
ZillyaTrojan.Boaxxe.Win32.9696
CrowdStrikewin/malicious_confidence_60% (D)
K7GWTrojan ( 0049c2681 )
Cybereasonmalicious.93b110
SymantecTrojan.Gen.2
ESET-NOD32Win32/Boaxxe.BR
APEXMalicious
AvastWin32:Adware-gen [Adw]
ClamAVWin.Trojan.Dropped-1919
KasperskyVHO:Trojan-Ransom.Win32.Spora.gen
BitDefenderTrojan.GenericKD.30575586
NANO-AntivirusTrojan.Win32.dutggp.eaqegb
MicroWorld-eScanTrojan.GenericKD.30575586
TencentMalware.Win32.Gencirc.10b0e4ac
Ad-AwareTrojan.GenericKD.30575586
SophosMal/Generic-S
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Prepscram.jm
FireEyeGeneric.mg.d36670193b110546
EmsisoftTrojan.GenericKD.30575586 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Boaxxe.an
AviraHEUR/AGEN.1127173
Antiy-AVLTrojan/Generic.ASMalwS.130050A
MicrosoftTrojan:Win32/Tiggre!rfn
AegisLabRiskware.Win32.Generic.1!c
GDataTrojan.GenericKD.30575586
TACHYONTrojan/W32.Boaxxe.691836
AhnLab-V3Trojan/Win32.Gen
McAfeeGenericATG-FCEN!D36670193B11
MAXmalware (ai score=100)
VBA32Trojan.Skeeyah
PandaTrj/Genetic.gen
YandexTrojan.Boaxxe!Qy+naJGQvrk
IkarusTrojan.Win32.Miuref
FortinetW32/Boaxxe.BR!tr
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove VHO:Trojan-Ransom.Win32.Spora?

VHO:Trojan-Ransom.Win32.Spora removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment