Ransom

About “Generic.Ransom.CloudSword.93E18043” infection

Malware Removal

The Generic.Ransom.CloudSword.93E18043 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.CloudSword.93E18043 virus can do?

  • Presents an Authenticode digital signature
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.CloudSword.93E18043?


File Info:

crc32: E0F8DEC7
md5: 9cbcf0c107be4aa8704d4eb7032967a8
name: 9CBCF0C107BE4AA8704D4EB7032967A8.mlw
sha1: 68a92bd4958deb368f9c89c2dfa962c1c6364cf6
sha256: 2d7a92a8ad1271d0544148b7a37de0d2b2180750a6e7753a26f97b801c369fb4
sha512: 34f72860e8f22b198d0e218793783ec2a90896216f9d26fd50fef632bef52f4a5e5540d41864bf6d50264db2eec432ea6e497f7f860527bd51dd9478a1673139
ssdeep: 768:qrCKp3QLdZMaybOmRkUmYSfbYW2YvfsWgzyAf51NZka5xf:qrCWATUmfbYW2WsWgzyAfzNZRR
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright 2017
Assembly Version: 1.0.0.0
InternalName: WindowsUpdater.exe
FileVersion: 1.0.0.0
CompanyName: Ambarawa Cyber Army
LegalTrademarks:
Comments: GX40
ProductName: GX40
ProductVersion: 1.0.0.0
FileDescription: GX40 - Ransomeware
OriginalFilename: WindowsUpdater.exe

Generic.Ransom.CloudSword.93E18043 also known as:

K7AntiVirusTrojan ( 0050cada1 )
ALYacTrojan.Ransom.GX40Locker
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.5091
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:MSIL/Filecoder.5726f7a4
K7GWTrojan ( 0050cada1 )
Cybereasonmalicious.107be4
SymantecTrojan.Gen.2
ESET-NOD32a variant of MSIL/Filecoder.FR
APEXMalicious
AvastMSIL:Ransom-BS [Trj]
ClamAVWin.Ransomware.GX40-6290314-0
KasperskyTrojan-Ransom.MSIL.Agent.yi
BitDefenderGeneric.Ransom.CloudSword.93E18043
NANO-AntivirusTrojan.Win32.Filecoder.enhsop
MicroWorld-eScanGeneric.Ransom.CloudSword.93E18043
TencentWin32.Trojan.Raas.Auto
Ad-AwareGeneric.Ransom.CloudSword.93E18043
SophosMal/FinalLock-A
ComodoMalware@#3rey2w7tjq64f
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_GXFORTY.F117D5
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.9cbcf0c107be4aa8
EmsisoftGeneric.Ransom.CloudSword.93E18043 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.MSIL.kqeu
WebrootW32.Ransom.Gen
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.1F47091
MicrosoftBackdoor:Win32/Bladabindi!ml
ArcabitGeneric.Ransom.CloudSword.93E18043
ZoneAlarmTrojan-Ransom.MSIL.Agent.yi
GDataMSIL.Trojan-Ransom.ABCLocker.A
AhnLab-V3Trojan/Win32.Ransom.C1943743
McAfeeArtemis!9CBCF0C107BE
MAXmalware (ai score=100)
VBA32Trojan.MSIL.gen.13
MalwarebytesMalware.AI.1526902564
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_GXFORTY.F117D5
YandexTrojan.Filecoder!2EWJpxhKkMQ
IkarusTrojan.MSIL.Filecoder
FortinetMSIL/Filecoder.FR!tr.ransom
AVGMSIL:Ransom-BS [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HwMAEpsA

How to remove Generic.Ransom.CloudSword.93E18043?

Generic.Ransom.CloudSword.93E18043 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment