Ransom

Generic.Ransom.Bitshifter.009711AD removal tips

Malware Removal

The Generic.Ransom.Bitshifter.009711AD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Bitshifter.009711AD virus can do?

  • Attempts to connect to a dead IP:Port (2 unique times)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Installs itself for autorun at Windows startup
  • Attempts to modify proxy settings
  • Creates a copy of itself

Related domains:

www.facebook.com

How to determine Generic.Ransom.Bitshifter.009711AD?


File Info:

crc32: D87A6D35
md5: 2814b33cebdb9d7ec8a814ebf13fb885
name: 2814B33CEBDB9D7EC8A814EBF13FB885.mlw
sha1: 5bf9c55cd00dd09aa7e707f871d35fc7e23a5e76
sha256: dd860f2815002241478b854fefcd7f4f55bea3bdef42b5c8be2c50c9c823110d
sha512: 50012b400a4992c8feed1fc61f4d90c2aa62b576b43bcc8f76e166c13b49eedd71ace2c12549162b985bd4657760b2cdc6bfdd289e62279d4c2d0a33e91c81cb
ssdeep: 12288:STQYplBsFWpIbZEo26O/J2VPEz+qXxjoViL0yXBthKytzvb0hpIF:ScWAFnNEy2wVPEhXxjoViD/A8SI
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Generic.Ransom.Bitshifter.009711AD also known as:

K7AntiVirusTrojan ( 00512a0a1 )
Elasticmalicious (high confidence)
DrWebTrojan.Siggen7.25795
CynetMalicious (score: 100)
ALYacTrojan.Ransom.Bitshifter
CylanceUnsafe
ZillyaDropper.Agent.Win32.273122
SangforTrojan.Win32.Save.a
AlibabaTrojan:Win32/Occamy.4f409cd0
K7GWTrojan ( 00512a0a1 )
Cybereasonmalicious.cebdb9
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.NMU
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Agent.izh
BitDefenderGeneric.Ransom.Bitshifter.009711AD
NANO-AntivirusTrojan.Win32.Agent.erdodu
MicroWorld-eScanGeneric.Ransom.Bitshifter.009711AD
TencentWin32.Trojan.Agent.Hpia
Ad-AwareGeneric.Ransom.Bitshifter.009711AD
SophosMal/Generic-S
ComodoMalware@#1rzljw6dbv7a7
BitDefenderThetaGen:NN.ZexaF.34170.JmHfaaU2Tjoi
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.hc
FireEyeGeneric.mg.2814b33cebdb9d7e
EmsisoftGeneric.Ransom.Bitshifter.009711AD (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Agent.ayah
AviraTR/FileCoder.suebo
Antiy-AVLTrojan/Generic.ASMalwS.269F4A7
MicrosoftTrojan:Win32/Occamy.CDD
GDataGeneric.Ransom.Bitshifter.009711AD
AhnLab-V3Trojan/Win32.Agent.C2871213
McAfeeArtemis!2814B33CEBDB
MAXmalware (ai score=80)
VBA32TrojanRansom.Agent
PandaTrj/GdSda.A
YandexTrojan.DR.Agent!hdc1lmNXQNQ
IkarusTrojan-Ransom.GandCrab
FortinetW32/Filecoder.NMU!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Generic.Ransom.Bitshifter.009711AD?

Generic.Ransom.Bitshifter.009711AD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment