Ransom

About “Generic.Ransom.AmnesiaE.100233CC (B)” infection

Malware Removal

The Generic.Ransom.AmnesiaE.100233CC (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.AmnesiaE.100233CC (B) virus can do?

  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Uses Windows utilities for basic functionality
  • Attempts to stop active services
  • Modifies boot configuration settings
  • Installs itself for autorun at Windows startup
  • Clears Windows events or logs
  • Creates a copy of itself
  • Uses suspicious command line tools or Windows utilities

How to determine Generic.Ransom.AmnesiaE.100233CC (B)?


File Info:

crc32: 0822E6FF
md5: 8995afbf4d0beabcbabde8b2f23837a2
name: 8995AFBF4D0BEABCBABDE8B2F23837A2.mlw
sha1: e3215088ebfb39af6f0e00a89957c7cbfb3b624b
sha256: 1374678c5566510a4bda6f917fd097f3deaafc10f1df8c45dff788f20415bef3
sha512: 6f90ba1ac74227c7da87feee7151bf8e1d34007d4b93f060ef581dd33dbc801d0a922eb100f7e2e31d13c03503f2992b65d8ec6cbd31105990411405f906f6ab
ssdeep: 24576:BGUYQwd1X4/EFdioQDNW7CDqDqWCN9xq6u6A1XO88I8ttgcsrQhVjumnUMaf6:IULwkQcDUA9w6wHx8dCQhNuaUMaf6
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.AmnesiaE.100233CC (B) also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacDeepScan:Generic.Ransom.AmnesiaE.100233CC
ZillyaTrojan.Filecoder.Win32.19469
SangforTrojan.Win32.Save.a
Cybereasonmalicious.f4d0be
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.Ouroboros.G
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
ClamAVWin.Ransomware.Vipasana-9783618-1
KasperskyHEUR:Trojan.Win32.Stosek.gen
BitDefenderDeepScan:Generic.Ransom.AmnesiaE.100233CC
NANO-AntivirusTrojan.Win32.Stosek.ivcvkt
MicroWorld-eScanDeepScan:Generic.Ransom.AmnesiaE.100233CC
Ad-AwareDeepScan:Generic.Ransom.AmnesiaE.100233CC
SophosGeneric ML PUA (PUA)
BitDefenderThetaGen:NN.ZexaF.34744.rvW@aGAJBphi
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom.Win32.VOIDCRYPT.SM
McAfee-GW-EditionGenericRXON-UG!8995AFBF4D0B
FireEyeDeepScan:Generic.Ransom.AmnesiaE.100233CC
EmsisoftDeepScan:Generic.Ransom.AmnesiaE.100233CC (B)
JiangminTrojan.Generic.gtxwb
AviraHEUR/AGEN.1139736
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASCommon.1B2
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmHEUR:Trojan-Ransom.Win32.Generic
GDataDeepScan:Generic.Ransom.AmnesiaE.100233CC
AhnLab-V3Ransomware/Win.VOIDCRYPT.C4454770
McAfeeGenericRXON-UG!8995AFBF4D0B
MAXmalware (ai score=89)
VBA32Trojan.Stosek
MalwarebytesRansom.Ouroboros
PandaTrj/CI.A
TrendMicro-HouseCallRansom.Win32.VOIDCRYPT.SM
YandexTrojan.Filecoder!BlA8CMjXWYc
IkarusTrojan-Ransom.Ouroboros
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Ouroboros.G!tr.ransom
AVGWin32:RansomX-gen [Ransom]

How to remove Generic.Ransom.AmnesiaE.100233CC (B)?

Generic.Ransom.AmnesiaE.100233CC (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment