Categories: Ransom

Generic.Ransom.Enigma.D581458C (file analysis)

The Generic.Ransom.Enigma.D581458C is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Enigma.D581458C virus can do?

  • Attempts to connect to a dead IP:Port (2 unique times)
  • Installs itself for autorun at Windows startup

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.Enigma.D581458C?


File Info:

crc32: 03D904D4md5: b5cb3f6266090af1d5b9114327c9aaaaname: B5CB3F6266090AF1D5B9114327C9AAAA.mlwsha1: 626239ead180aa8d8df35317dc93275502113870sha256: 35f9e91a8782bdf6675b7a9caa7ba80c7c032534b69ecae38bc9166ba443bf00sha512: 721cbbec4aa396b5a342082314eaacbf8a75342280a587accb5369c0b6c6bdaa9aa9d1ca3309375dec65d83f82d63df6dc1374498a615da83ab88319e36c038assdeep: 6144:QaPCw2SlzQWxmp1rUuQW+zFTj4C+3AFLDi+mZ4YVAYR04q:1PCw2SlZwp1rUuQW+zF7+3AJi+mZ4Yztype: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.Enigma.D581458C also known as:

K7AntiVirus Trojan ( 004f984b1 )
Lionic Trojan.Win32.Generic.4!c
Elastic malicious (high confidence)
DrWeb Trojan.Encoder.5384
Cynet Malicious (score: 99)
ALYac DeepScan:Generic.Ransom.Enigma.D581458C
Cylance Unsafe
Zillya Trojan.Filecoder.Win32.6822
Alibaba Trojan:Win32/Enigma.d336b7b6
K7GW Trojan ( 004f984b1 )
Cybereason malicious.266090
Cyren W32/S-cc23db15!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/Filecoder.Enigma.G
APEX Malicious
Avast Win32:Malware-gen
BitDefender DeepScan:Generic.Ransom.Enigma.D581458C
NANO-Antivirus Trojan.Win32.EnigmaRansom.evpwva
MicroWorld-eScan DeepScan:Generic.Ransom.Enigma.D581458C
Tencent Win32.Trojan.Filecoder.Pgwp
Ad-Aware DeepScan:Generic.Ransom.Enigma.D581458C
Sophos Mal/Generic-S
Comodo Malware@#1ge4ecgp8edki
BitDefenderTheta Gen:NN.ZexaF.34170.ruW@aON68Boi
VIPRE Trojan.Win32.Generic!BT
McAfee-GW-Edition BehavesLike.Win32.Dropper.dh
FireEye Generic.mg.b5cb3f6266090af1
Emsisoft DeepScan:Generic.Ransom.Enigma.D581458C (B)
SentinelOne Static AI – Suspicious PE
Avira HEUR/AGEN.1143723
eGambit Unsafe.AI_Score_100%
Antiy-AVL Trojan/Generic.ASMalwS.22EB0B2
Microsoft Trojan:Win32/Tiggre!rfn
GData DeepScan:Generic.Ransom.Enigma.D581458C
AhnLab-V3 Malware/Win32.Generic.C2369808
McAfee Artemis!B5CB3F626609
MAX malware (ai score=98)
VBA32 BScope.Trojan.Dynamer
Panda Trj/Genetic.gen
Rising Trojan.Generic@ML.90 (RDML:63gTNf6qrVBEZ+MLYsnb5g)
Yandex Trojan.GenAsa!D3aCudMuakM
Ikarus Trojan-Ransom.Enigma
Fortinet W32/Generic.AP.15928!tr
AVG Win32:Malware-gen
Paloalto generic.ml

How to remove Generic.Ransom.Enigma.D581458C?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

What is “MSIL/TrojanDropper.Agent.BVT”?

The MSIL/TrojanDropper.Agent.BVT is considered dangerous by lots of security experts. When this infection is active,…

1 day ago

Should I remove “Generic.Dacic.94CCEEA9.A.A4A6DA47”?

The Generic.Dacic.94CCEEA9.A.A4A6DA47 is considered dangerous by lots of security experts. When this infection is active,…

1 day ago

Malware.AI.524217860 removal tips

The Malware.AI.524217860 is considered dangerous by lots of security experts. When this infection is active,…

1 day ago

Trojan:Win32/Koutodoor.F removal tips

The Trojan:Win32/Koutodoor.F is considered dangerous by lots of security experts. When this infection is active,…

1 day ago

How to remove “Malware.AI.1412460714”?

The Malware.AI.1412460714 is considered dangerous by lots of security experts. When this infection is active,…

1 day ago

Generic.Dacic.8952383F.A.5EC8C34B removal instruction

The Generic.Dacic.8952383F.A.5EC8C34B is considered dangerous by lots of security experts. When this infection is active,…

1 day ago