Ransom

How to remove “Generic.Ransom.Babuk.A.3E90455B”?

Malware Removal

The Generic.Ransom.Babuk.A.3E90455B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Babuk.A.3E90455B virus can do?

  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • Attempts to delete volume shadow copies
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Exhibits possible ransomware file modification behavior
  • Network activity detected but not expressed in API logs
  • Uses suspicious command line tools or Windows utilities

How to determine Generic.Ransom.Babuk.A.3E90455B?


File Info:

crc32: 1AAE4341
md5: c7ec4e7022f26949ed39033616efe894
name: C7EC4E7022F26949ED39033616EFE894.mlw
sha1: 0e4da1fa8b3bc8b2f410cfd7230b9fc70dc10670
sha256: 02e9883501635da9b501e715bb827a0b9d0c265991f1263f073eb6c5d9b335c3
sha512: 04976b2e50e5f7f7a067b0dc07072f22c607d8ae6c33b4ec4e65a851b71bef939725f29fdeaa7a943033a9aa6b5f9a09f1d029860a0dbd6184be768754982aff
ssdeep: 1536:/hkWBeGnwEvWsrQLOJgY8ZZP8LHD4XWaNH71dLdG1iiFM2iG2nsf:LBevwWsrQLOJgY8Zp8LHD4XWaNH71dL
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.Babuk.A.3E90455B also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
ClamAVWin.Ransomware.Maze-7473772-0
ALYacGeneric.Ransom.Babuk.A.3E90455B
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (D)
K7GWTrojan ( 005782fe1 )
K7AntiVirusTrojan ( 005782fe1 )
SymantecRansom.Babuk
ESET-NOD32a variant of Win32/Filecoder.Babyk.A
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyVHO:Trojan-Ransom.Win32.Cryptor.gen
BitDefenderGeneric.Ransom.Babuk.A.3E90455B
MicroWorld-eScanGeneric.Ransom.Babuk.A.3E90455B
Ad-AwareGeneric.Ransom.Babuk.A.3E90455B
SophosML/PE-A
BitDefenderThetaGen:NN.ZexaF.34126.euW@aa!8Pvn
TrendMicroRansom.Win32.BABUK.SMRD1
McAfee-GW-EditionBehavesLike.Win32.Agent.lm
FireEyeGeneric.mg.c7ec4e7022f26949
EmsisoftTrojan.FileCoder (A)
SentinelOneStatic AI – Malicious PE
AviraTR/Crypt.EPACK.Gen2
MicrosoftRansom:Win32/Babuk.MAK!MTB
ArcabitGeneric.Ransom.Babuk.A.3E90455B
ZoneAlarmHEUR:Trojan-Ransom.Win32.Generic
GDataGeneric.Ransom.Babuk.A.3E90455B
AhnLab-V3Ransomware/Win.Babuk.R440335
Acronissuspicious
McAfeeGenericRXNS-AS!C7EC4E7022F2
MAXmalware (ai score=83)
VBA32BScope.TrojanRansom.Crypmod
MalwarebytesMalware.AI.3103134655
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom.Win32.BABUK.SMRD1
RisingRansom.Babuk!1.D7A0 (CLASSIC)
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/FilecoderProt.F183!tr.ransom
AVGWin32:Malware-gen

How to remove Generic.Ransom.Babuk.A.3E90455B?

Generic.Ransom.Babuk.A.3E90455B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment