Ransom

Generic.Ransom.AmnesiaE.48050227 removal guide

Malware Removal

The Generic.Ransom.AmnesiaE.48050227 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.AmnesiaE.48050227 virus can do?

  • Attempts to connect to a dead IP:Port (3 unique times)
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Uses Windows utilities for basic functionality
  • Attempts to stop active services
  • Modifies boot configuration settings
  • Likely virus infection of existing system binary
  • Clears Windows events or logs
  • Uses suspicious command line tools or Windows utilities

Related domains:

www.sfml-dev.org

How to determine Generic.Ransom.AmnesiaE.48050227?


File Info:

crc32: 6369CF44
md5: 21a69dfb179a807024a0b8d5838c945c
name: 21A69DFB179A807024A0B8D5838C945C.mlw
sha1: 78e680ace5f3c0c226a12210f093f0c5b0e85542
sha256: 8dff91cfab0e19c504ff9e9f207ce1e4a4ca5ef8585513e008ffe02bca9075cc
sha512: 55567a6859f33f2d18a59136cd87458a9219eb9ef9585a305e08ea8f42508460b36b95ef3b5474d5e6eddd64e691cd45fbd9ccb755825a1e336815fe45a04c0a
ssdeep: 24576:bVYVtP0cbJ8n0NM6ZkgQbrYG/bi2HH7eJmMYgR5hv/D:bV/mm0O6SYG/Hn7KmMYgR5h3
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.AmnesiaE.48050227 also known as:

K7AntiVirusTrojan ( 005640be1 )
LionicTrojan.Win32.Generic.j!c
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.32312
CynetMalicious (score: 100)
CAT-QuickHealTrojan.GenericRI.S15546957
ALYacTrojan.Ransom.Ouroboros
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.17729
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Ouroboros.f03cd9cb
K7GWTrojan ( 005640be1 )
Cybereasonmalicious.b179a8
CyrenW32/Ransom.MQ.gen!Eldorado
ESET-NOD32a variant of Win32/Filecoder.Ouroboros.E
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
ClamAVWin.Ransomware.Ouroboros-9848778-0
KasperskyUDS:Trojan-Ransom.Win32.Generic
BitDefenderDeepScan:Generic.Ransom.AmnesiaE.48050227
NANO-AntivirusTrojan.Win32.Encoder.hrlnkm
MicroWorld-eScanDeepScan:Generic.Ransom.AmnesiaE.48050227
TencentWin32.Trojan.Filecoder.Hqbu
Ad-AwareDeepScan:Generic.Ransom.AmnesiaE.48050227
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34058.!uW@a8CtWkni
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom.Win32.VOIDCRYPT.SMTH
McAfee-GW-EditionBehavesLike.Win32.Injector.dh
FireEyeGeneric.mg.21a69dfb179a8070
EmsisoftDeepScan:Generic.Ransom.AmnesiaE.48050227 (B)
JiangminTrojan.DelShad.fq
WebrootW32.Malware.Gen
AviraTR/FileCoder.gkqij
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.314160D
MicrosoftRansom:Win32/Ouroboros.SBR!MTB
ArcabitDeepScan:Generic.Ransom.AmnesiaE.D2DD3033
ZoneAlarmHEUR:Trojan-Ransom.Win32.Generic
GDataDeepScan:Generic.Ransom.AmnesiaE.48050227
AhnLab-V3Trojan/Win32.RL_FileCoder.R340210
McAfeeGenericRXMJ-AK!21A69DFB179A
MAXmalware (ai score=83)
VBA32BScope.Trojan.DelShad
MalwarebytesRansom.Ouroboros
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom.Win32.VOIDCRYPT.SMTH
RisingRansom.Agent!1.C4E7 (CLASSIC)
IkarusTrojan-Ransom.Ouroboros
MaxSecureTrojan.Malware.10307848.susgen
FortinetW32/Ouroboros.E!tr.ransom
AVGWin32:RansomX-gen [Ransom]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Ouroboros.HwoCH3wA

How to remove Generic.Ransom.AmnesiaE.48050227?

Generic.Ransom.AmnesiaE.48050227 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment