Ransom

Generic.Ransom.CryptXXX.AC2E069E (file analysis)

Malware Removal

The Generic.Ransom.CryptXXX.AC2E069E is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.CryptXXX.AC2E069E virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect

How to determine Generic.Ransom.CryptXXX.AC2E069E?


File Info:

crc32: 395C3A60
md5: d845eaa3683a1c81faeb1b27171e64fd
name: D845EAA3683A1C81FAEB1B27171E64FD.mlw
sha1: 30176cf23df90f05a2c95f5928d2144bd3360225
sha256: 29c34881aadcbf2e969da27c786c26568bf978fea250d8a9048e4b6dc1c9d102
sha512: 290c5e184deefb123f549d494a72f2c7fb33862bbbe8552df9b7a9ed6dd6b6e16e8b7bbc226ba21550a13e540aa499299db3af13aec7eb0117e8171858783ea0
ssdeep: 1536:EECdmz/I22ztfiinp45OqFojK06TVi+6Rh3KPqcSUiGTOVnnG:EEgi/KtXp4YqjdAjaZSU9OlG
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2016
Assembly Version: 1.0.0.0
InternalName: DO NOT OPEN THE FUCKIN RANSOMWARE.exe
FileVersion: 1.0.0.0
ProductName: DO NOT OPEN THE FUCKIN RANSOMWARE
ProductVersion: 1.0.0.0
FileDescription: DO NOT OPEN THE FUCKIN RANSOMWARE
OriginalFilename: DO NOT OPEN THE FUCKIN RANSOMWARE.exe

Generic.Ransom.CryptXXX.AC2E069E also known as:

K7AntiVirusRiskware ( 0040eff71 )
DrWebTrojan.KillFiles.60544
CynetMalicious (score: 85)
ALYacDeepScan:Generic.Ransom.CryptXXX.AC2E069E
ZillyaTrojan.CryptXXX.Win32.885
SangforTrojan.Win32.Save.a
AlibabaRansom:Win32/CryptXXX.7a52c99d
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.3683a1
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.CryptXXX.xoa
BitDefenderDeepScan:Generic.Ransom.CryptXXX.AC2E069E
NANO-AntivirusTrojan.Win32.CryptXXX.ekqokj
MicroWorld-eScanDeepScan:Generic.Ransom.CryptXXX.AC2E069E
TencentWin32.Trojan.Cryptxxx.Wqwj
Ad-AwareDeepScan:Generic.Ransom.CryptXXX.AC2E069E
SophosML/PE-A + Mal/Mfestus-A
BitDefenderThetaGen:NN.ZexaF.34608.dC0@aOqJA6c
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.qc
FireEyeGeneric.mg.d845eaa3683a1c81
EmsisoftDeepScan:Generic.Ransom.CryptXXX.AC2E069E (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1114944
MicrosoftTrojan:Win32/Ymacco.AB29
AegisLabTrojan.Multi.Generic.4!c
ZoneAlarmTrojan-Ransom.Win32.CryptXXX.xoa
GDataDeepScan:Generic.Ransom.CryptXXX.AC2E069E
AhnLab-V3Trojan/Win32.CryptXXX.R194805
McAfeeArtemis!D845EAA3683A
MAXmalware (ai score=80)
VBA32TrojanRansom.CryptXXX
MalwarebytesMalware.Heuristic.1003
PandaTrj/CI.A
RisingRansom.CryptXXX!8.5DF0 (C64:YzY0OmH50VM7x8zi)
YandexTrojan.Agent!seCfBYCp6qg
IkarusTrojan.SuspectCRC
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.CryptXXX.HxAAnscA

How to remove Generic.Ransom.CryptXXX.AC2E069E?

Generic.Ransom.CryptXXX.AC2E069E removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment