Ransom

Generic.Ransom.Enigma.08C97694 removal tips

Malware Removal

The Generic.Ransom.Enigma.08C97694 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Enigma.08C97694 virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Network anomalies occured during the analysis.
  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Generates some ICMP traffic
  • Attempts to interact with an Alternate Data Stream (ADS)
  • Appends a known Enigma ransomware file extension to files that have been encrypted
  • Uses suspicious command line tools or Windows utilities

How to determine Generic.Ransom.Enigma.08C97694?


File Info:

crc32: 0857CD49
md5: b3f0512a80d555890dcf5c4a81efd9f8
name: B3F0512A80D555890DCF5C4A81EFD9F8.mlw
sha1: 2dd09d63f5da6f420bacef57f3d55316ac79b127
sha256: bcacee4802e3388f7ac33aa063a770472fb1bfb97c0a579a9d34d6846f7b5112
sha512: 5bc78838a9d139e5db1f317fea82adf6fdcb377610a50f3487500b3bd61d9379966b6c3a0f02454f014e0f5df2d49d89595000829003718b010797908373cacb
ssdeep: 6144:CIeeq5/wYylcMR7Jfy/4k05vhIkOLdE7BE:Feeq50hR7Jfy/4k05pItWE
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.Enigma.08C97694 also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.22192
CynetMalicious (score: 99)
ALYacDeepScan:Generic.Ransom.Enigma.08C97694
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.17250
SangforTrojan.Win32.Save.a
AlibabaRansom:Win32/Cryptor.f859a63a
Cybereasonmalicious.a80d55
CyrenW32/S-d9895c18!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.Enigma.H
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Cryptor.bpk
BitDefenderDeepScan:Generic.Ransom.Enigma.08C97694
NANO-AntivirusTrojan.Win32.EnigmaRansom.evnvvy
MicroWorld-eScanDeepScan:Generic.Ransom.Enigma.08C97694
TencentWin32.Trojan.Raas.Auto
Ad-AwareDeepScan:Generic.Ransom.Enigma.08C97694
SophosMal/Generic-S
ComodoMalware@#3kkjxgv2lkspg
BitDefenderThetaGen:NN.ZexaF.34170.quW@aGn0ebki
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_ENIGMA.SM1
McAfee-GW-EditionGenericRXDI-RO!B3F0512A80D5
FireEyeGeneric.mg.b3f0512a80d55589
EmsisoftDeepScan:Generic.Ransom.Enigma.08C97694 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Generic.bszfd
AviraHEUR/AGEN.1126848
Antiy-AVLTrojan/Generic.ASMalwS.22E1902
MicrosoftTrojan:Win32/Tiggre!rfn
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataDeepScan:Generic.Ransom.Enigma.08C97694
McAfeeGenericRXDI-RO!B3F0512A80D5
MAXmalware (ai score=100)
VBA32BScope.Trojan.Dynamer
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_ENIGMA.SM1
RisingTrojan.Generic@ML.99 (RDML:GRgXHISlNQ1myIzZbnNwWg)
IkarusTrojan-Ransom.Enigma
FortinetW32/Generic.AP.15928!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Generic.Ransom.Enigma.08C97694?

Generic.Ransom.Enigma.08C97694 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment