Ransom

Generic.Ransom.AIT.Ouroboros.E86A6FCD malicious file

Malware Removal

The Generic.Ransom.AIT.Ouroboros.E86A6FCD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.AIT.Ouroboros.E86A6FCD virus can do?

  • Uses Windows utilities for basic functionality
  • Attempts to delete volume shadow copies
  • Modifies boot configuration settings
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Attempts to modify proxy settings
  • Creates a copy of itself
  • Uses suspicious command line tools or Windows utilities

How to determine Generic.Ransom.AIT.Ouroboros.E86A6FCD?


File Info:

crc32: 39E55F57
md5: 7333a254598271eb52fdecf24662fee6
name: 7333A254598271EB52FDECF24662FEE6.mlw
sha1: 612dd23e90b7b57a92c0eaa7ad610816776e7b86
sha256: 8547d51579c9651c5dedd47a7148b7e253bd566ba6741b3e980f062ed10e2b29
sha512: 4c26573d8746998a365689ab0b88829a76f521c985f941fafe1733e1caa3be6d1a3fd46eef640fd1407748be1bb41066470ee0cdc2045f9d9760e78e293dd761
ssdeep: 24576:wAHnh+eWsN3skA4RV1Hom2KXMmHawiuYd25:nh+ZkldoPK8Yawiux
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

Generic.Ransom.AIT.Ouroboros.E86A6FCD also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Encoder.13147
CynetMalicious (score: 99)
CAT-QuickHealRansom.Autoit.CryptoWire.A
ALYacGeneric.Ransom.AIT.Ouroboros.E86A6FCD
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
Cybereasonmalicious.459827
SymantecRansom.Cryptolocker
ESET-NOD32multiple detections
APEXMalicious
AvastFileRepMalware
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Ransom.AIT.Ouroboros.E86A6FCD
MicroWorld-eScanGeneric.Ransom.AIT.Ouroboros.E86A6FCD
Ad-AwareGeneric.Ransom.AIT.Ouroboros.E86A6FCD
SophosML/PE-A
BitDefenderThetaAI:Packer.C658345116
TrendMicroMal_OtorunP
McAfee-GW-EditionBehavesLike.Win32.TrojanAitInject.dh
FireEyeGeneric.mg.7333a254598271eb
EmsisoftGeneric.Ransom.AIT.Ouroboros.E86A6FCD (B)
AviraHEUR/AGEN.1100014
MicrosoftTrojan:Win32/Fuerboos.B!cl
ArcabitGeneric.Ransom.AIT.Ouroboros.E86A6FCD
GDataGeneric.Ransom.AIT.Ouroboros.E86A6FCD (2x)
MAXmalware (ai score=89)
MalwarebytesAutoKMS.HackTool.Patcher.DDS
TrendMicro-HouseCallMal_OtorunP
RisingRansom.CryptoWire/Autoit!1.C3A2 (CLASSIC)
IkarusTrojan-Ransom.Ouroboros
FortinetAutoIt/Ouroboros.A!tr.ransom
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360HEUR/QVM10.1.A163.Malware.Gen

How to remove Generic.Ransom.AIT.Ouroboros.E86A6FCD?

Generic.Ransom.AIT.Ouroboros.E86A6FCD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment