Ransom

Generic.Ransom.Enigma.6063C1CA removal guide

Malware Removal

The Generic.Ransom.Enigma.6063C1CA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Enigma.6063C1CA virus can do?

  • A process attempted to delay the analysis task.
  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • Attempts to delete volume shadow copies
  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Attempts to interact with an Alternate Data Stream (ADS)
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.Enigma.6063C1CA?


File Info:

crc32: AA4E21FA
md5: aefdbd2aec9021df736f85e93506c00f
name: AEFDBD2AEC9021DF736F85E93506C00F.mlw
sha1: dc0b238de810e256840830ed04556ec4cd863b91
sha256: 962bd6e4e304b2bb7086699cf4364d6937bfb26c84efdd536b92c803473a553c
sha512: 51534ad8fa54402c0a038e7b433028a5be3d64186d959fc0fb44e3f8970cb76f4a31d26e23f69d8a75f048597e962daf9afa3eb2bfbb55d0b134ea7be7dc2423
ssdeep: 6144:UHL5So4+cIqNnxAGrewNk126XdeM4QEkslW:UHL5r53qNxAGrewNk126XdTbnslW
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.Enigma.6063C1CA also known as:

Elasticmalicious (high confidence)
ClamAVWin.Malware.Buho-7564755-0
CAT-QuickHealTrojan.Dynamer.S17976
ALYacDeepScan:Generic.Ransom.Enigma.6063C1CA
CylanceUnsafe
SangforTrojan.Win32.Enigma.usrg
CrowdStrikewin/malicious_confidence_60% (D)
K7GWTrojan ( 004f5e1e1 )
K7AntiVirusTrojan ( 004f5e1e1 )
CyrenW32/S-d9895c18!Eldorado
ESET-NOD32a variant of Win32/Filecoder.Enigma.F
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 99)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderDeepScan:Generic.Ransom.Enigma.6063C1CA
NANO-AntivirusTrojan.Win32.Filecoder.evjmtr
TencentWin32.Trojan.Filecoder.Lsmf
SophosMal/Generic-S
ComodoMalware@#25c5jcugi2dhz
BitDefenderThetaGen:NN.ZexaF.34170.puW@a8TIyDoi
VIPRETrojan.Win32.Generic!BT
FireEyeGeneric.mg.aefdbd2aec9021df
EmsisoftDeepScan:Generic.Ransom.Enigma.6063C1CA (B)
SentinelOneStatic AI – Suspicious PE
AviraHEUR/AGEN.1126848
ArcabitDeepScan:Generic.Ransom.Enigma.6063C1CA
ZoneAlarmHEUR:Trojan.Win32.Generic
AhnLab-V3Trojan/Win32.Crynigma.C1521794
MalwarebytesMalware.AI.375118293
PandaTrj/GdSda.A
RisingTrojan.Generic@ML.100 (RDML:meyK+azaD0VqG8mNhVFC5w)
IkarusTrojan-Ransom.Enigma
FortinetW32/Generic.AP.13E0C!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Generic.Ransom.Enigma.6063C1CA?

Generic.Ransom.Enigma.6063C1CA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment