Ransom

About “Generic.Ransom.BTCWare.4147A9BE” infection

Malware Removal

The Generic.Ransom.BTCWare.4147A9BE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.BTCWare.4147A9BE virus can do?

  • Deletes its original binary from disk
  • Steals private information from local Internet browsers
  • Exhibits possible ransomware file modification behavior
  • Writes a potential ransom message to disk

How to determine Generic.Ransom.BTCWare.4147A9BE?


File Info:

crc32: 394934CD
md5: b5b621175c8965e8a4c1100abd90e2d0
name: B5B621175C8965E8A4C1100ABD90E2D0.mlw
sha1: 53b6d916ced4e26e6f68f626840eb63a0d2423a5
sha256: f76a1e9ba8ab922b0a2e61d10da1c3f68fc48a68d100e38a3650d830e3384083
sha512: cff8efbde45022d470372b8c0bcc977c13bbfd3638efa368e6ba812c5b7ad9c269fe76646f8b1d57ffead507bd29d8e9ce6799427b0454ac9f0873ba45c14860
ssdeep: 6144:mjs5q7qAOYrb5v8g7rDwM44QBwK/FPO51lp/DHKoyP3/hG5giAOOqBOCoqj7x40:Akq7qAOq50tLV/FA1lNKdpG5jjx3
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.BTCWare.4147A9BE also known as:

BkavW32.AIDetect.malware2
K7AntiVirusRiskware ( 0040eff71 )
DrWebTrojan.Encoder.11950
CynetMalicious (score: 100)
ALYacTrojan.Ransom.Yyto
CylanceUnsafe
ZillyaTrojan.Crypmodadv.Win32.144
SangforRansom.Win32.Crypmodadv.xnb
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Crypmodadv.f23af968
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.75c896
SymantecRansom.Locky
ESET-NOD32a variant of Win32/Filecoder.NOF
APEXMalicious
AvastFileRepMalware
KasperskyTrojan-Ransom.Win32.Crypmodadv.xnb
BitDefenderGeneric.Ransom.BTCWare.4147A9BE
NANO-AntivirusRiskware.Win32.FileFinder.esvbmy
ViRobotTrojan.Win32.Ransom.403456.A
MicroWorld-eScanGeneric.Ransom.BTCWare.4147A9BE
TencentWin32.Trojan.Raas.Auto
Ad-AwareGeneric.Ransom.BTCWare.4147A9BE
ComodoMalware@#nd4urqgjzig4
BitDefenderThetaAI:Packer.B01561501F
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_CUTSWISH.C
McAfee-GW-EditionBehavesLike.Win32.Generic.fh
FireEyeGeneric.mg.b5b621175c8965e8
EmsisoftGeneric.Ransom.BTCWare.4147A9BE (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Crypmodadv.gl
WebrootW32.Malware.Gen
AviraADWARE/FileFinder.Gen7
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Tiggre!rfn
ArcabitGeneric.Ransom.BTCWare.4147A9BE
AegisLabTrojan.Win32.Crypmodadv.tp9A
GDataWin32.Trojan-Ransom.YYTOCoder.B
TACHYONRansom/W32.Crypmodadv.403456
AhnLab-V3Trojan/Win32.Crypmodadv.C1983897
McAfeeRansom-YYTO!B5B621175C89
MAXmalware (ai score=100)
VBA32TrojanRansom.Crypmodadv
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_CUTSWISH.C
RisingRansom.Crypmodadv!8.291 (CLOUD)
YandexTrojan.GenAsa!QIRb1n725Oo
IkarusTrojan-Ransom.Crypmodadv
FortinetW32/Crypmodadv.XNB!tr
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Crypmodadv.HwoCvHsA

How to remove Generic.Ransom.BTCWare.4147A9BE?

Generic.Ransom.BTCWare.4147A9BE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment