Ransom

About “Generic.Ransom.Cryak.412DD17A” infection

Malware Removal

The Generic.Ransom.Cryak.412DD17A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Cryak.412DD17A virus can do?

  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.Cryak.412DD17A?


File Info:

crc32: CE79D5E3
md5: eb379bcd7ecfe1d89ab62844d5845cb0
name: EB379BCD7ECFE1D89AB62844D5845CB0.mlw
sha1: ee9db1bed592903946c58e259afeded0943df314
sha256: 0f6b28ee75b58be8c8d4cb73f6752c42a063ee28a9dae1420c4c97ff65647a7b
sha512: 65cacd0b39c5d37a40c3f4b367f721ef47b042e25dab34bfdfe739be8cbe89855ee3cf7e661155a7f7951de522545ae5ab2f86a36d39cc992588de54a5504a5b
ssdeep: 1536:VxkqUqQw5Q4lY0YwxzWqp6mL8NdqqxL0PKRHH6CchriI/VJGgK:8qZxlhPzWqiZKiI/OgK
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.Cryak.412DD17A also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 004c1e461 )
Elasticmalicious (high confidence)
DrWebWin32.HLLW.Autoruner2.34213
CynetMalicious (score: 100)
CAT-QuickHealMalware.Sigmal.S2281367
ALYacGeneric.Ransom.Cryak.412DD17A
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (D)
AlibabaRansom:Win32/generic.ali2000010
K7GWTrojan ( 004c1e461 )
Cybereasonmalicious.d7ecfe
CyrenW32/Filecoder.U.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.EQ
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Dropper.Win32.Delf.ehyr
BitDefenderGeneric.Ransom.Cryak.412DD17A
NANO-AntivirusTrojan.Win32.Delf.eywwtf
MicroWorld-eScanGeneric.Ransom.Cryak.412DD17A
TencentWin32.Trojan-dropper.Delf.Akot
Ad-AwareGeneric.Ransom.Cryak.412DD17A
SophosMal/Generic-S + Troj/Cryakl-G
ComodoTrojWare.Win32.TrojanDownloader.Delf.gen@1xqow5
BitDefenderThetaAI:Packer.E54F462C17
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom.Win32.CRYLOCK.SMEY
McAfee-GW-EditionBehavesLike.Win32.Wanex.mh
FireEyeGeneric.mg.eb379bcd7ecfe1d8
EmsisoftGeneric.Ransom.Cryak.412DD17A (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1117130
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.24FD9B3
MicrosoftRansom:Win32/Cryakl.A
ArcabitGeneric.Ransom.Cryak.412DD17A
AegisLabTrojan.Win32.Generic.4!c
ZoneAlarmTrojan-Dropper.Win32.Delf.ehyr
GDataGeneric.Ransom.Cryak.412DD17A
AhnLab-V3Trojan/Win32.Crypmod.C2257696
McAfeeGenericRXGU-GM!EB379BCD7ECF
MAXmalware (ai score=97)
VBA32TScope.Trojan.Delf
MalwarebytesMalware.AI.3408801147
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom.Win32.CRYLOCK.SMEY
RisingRansom.Cryakl!8.560 (CLOUD)
IkarusTrojan-Ransom.FileCrypter
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Filecoder.EQ!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Generic.Ransom.Cryak.412DD17A?

Generic.Ransom.Cryak.412DD17A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment