Virus

Virus.VirLock.7 information

Malware Removal

The Virus.VirLock.7 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Virus.VirLock.7 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • At least one process apparently crashed during execution
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Virus.VirLock.7?


File Info:

name: 6315B803B929CCE0FFFC.mlw
path: /opt/CAPEv2/storage/binaries/03a91714031ad230dc10c873b1e9b259982bdf646fb67d4f37812cc85b32e5c3
crc32: DCE76414
md5: 6315b803b929cce0fffcb5fb8e883dbb
sha1: 403416f6f7e9ae3115df3e996dee36a527c5802f
sha256: 03a91714031ad230dc10c873b1e9b259982bdf646fb67d4f37812cc85b32e5c3
sha512: 196097b307ef0b821e123c50ff249ea47d1234a270e61de69bcb78209216833b38c0731e1dcffb1c05dcc9b680143f814e8f4b282fd12d58085f196e86ee1bd9
ssdeep: 12288:jXq155IKJnMuKlVsurP8zg6bCD45sfHS7FCetby33/780Ojfph2anRQ:DqxqsupwJ5Ce033/7FOjfDvnm
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D8E4AE38CBB16A91DD0ADCF45257ACC8C8940752237DEAF722492B01A4960EDF6F35BD
sha3_384: ec93b4d4ce86eb0122d1ca7215a6ae4b2d2f1e386eef85dce28439dec0cdeaafabdee71c909fe0c544962becaa4dd51f
ep_bytes: 83ec20e857be0a00e901000000c3e84c
timestamp: 2015-02-07 09:53:36

Version Info:

0: [No Data]

Virus.VirLock.7 also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.6315b803b929cce0
McAfeeW32/VirRansom.b!6315B803B929
CylanceUnsafe
ZillyaVirus.Virlock.Win32.2
K7AntiVirusTrojan ( 0040fa5c1 )
K7GWTrojan ( 0040fa5c1 )
Cybereasonmalicious.3b929c
BitDefenderThetaAI:FileInfector.AE99F02013
CyrenW32/S-11daff79!Eldorado
SymantecW32.Virlock!gen1
ESET-NOD32a variant of Win32/Virlock.J
APEXMalicious
ClamAVWin.Virus.Virlock-6804475-0
KasperskyVirus.Win32.PolyRansom.f
BitDefenderWin32.Virlock.Gen.3
NANO-AntivirusVirus.Win32.Virlock.dsdros
MicroWorld-eScanWin32.Virlock.Gen.3
TencentVirus.Win32.Polyransom.f
Ad-AwareWin32.Virlock.Gen.3
EmsisoftWin32.Virlock.Gen.3 (B)
ComodoVirus.Win32.VirLock.GA@7lv9go
DrWebWin32.VirLock.16
VIPREVirus.Win32.Nabucur.c (v)
McAfee-GW-EditionBehavesLike.Win32.VirRansom.jc
SophosML/PE-A + W32/VirRnsm-E
SentinelOneStatic AI – Malicious PE
GDataWin32.Virlock.Gen.3
JiangminWin32/Polyransom.f
AviraTR/Crypt.ZPACK.Gen
Antiy-AVLTrojan/Generic.ASVirus.1FC
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
TACHYONVirus/W32.VirRansom.D
AhnLab-V3Win32/Nabucur.D.X1506
Acronissuspicious
VBA32Virus.VirLock.gen.7
ALYacWin32.Virlock.Gen.3
MAXmalware (ai score=89)
TrendMicro-HouseCallPE_VIRLOCK.A-O
RisingMalware.Heuristic!ET#99% (RDMK:cmRtazqPbYUcW74JYMSlkvilEMq4)
IkarusVirus.Win32.Virlock
eGambitUnsafe.AI_Score_100%
FortinetW32/Virlock.B
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (D)
MaxSecureVirus.PolyRansom.b

How to remove Virus.VirLock.7?

Virus.VirLock.7 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment