Ransom

Generic.Ransom.Fonix.2.B4BCBB0C removal guide

Malware Removal

The Generic.Ransom.Fonix.2.B4BCBB0C is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Fonix.2.B4BCBB0C virus can do?

  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Generic.Ransom.Fonix.2.B4BCBB0C?


File Info:

name: 43E1229087019BA331B4.mlw
path: /opt/CAPEv2/storage/binaries/e4b172b05f158fb3990b55369a2a698f2515d67b70553e8cba03f45e84211976
crc32: 8E45A5D9
md5: 43e1229087019ba331b4fb05c9c9a586
sha1: 37d9660a960370a7a203d22a00cb2096a84938e3
sha256: e4b172b05f158fb3990b55369a2a698f2515d67b70553e8cba03f45e84211976
sha512: 8b8d44ae13ea4086c3e09b1ba92a4817d0b2570df4256c2e9d1dd7757bf43d71a10eba11585479d6cc01720b39272aa010c454d449f828ad7e15ed3b3187d7e9
ssdeep: 3072:0bFfHgTWmCRkGbKGLeNTBfg13FfHgTWmCRkGbKGLeNTBfLY8Gk21pLaO:S5aWbksiNTBo95aWbksiNTBjY84LF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15B742943AEEDBDF2FAED493105A1632A573152EC97F099D7873C2D03C9126C1863D29A
sha3_384: 0cf298c1781c1544cd813001da76064b75683d7d9e794cffed790c54099756ac96900aa4bc9fe4ee2f0c8c9a94ec28af
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-08-17 11:12:48

Version Info:

Translation: 0x0000 0x04b0
CompanyName: Aypex
FileDescription: Aypex_FonixTool
FileVersion: 1.0.0.0
InternalName: Aypex_FonixTool.exe
LegalCopyright: Copyright © Aypex 2022
LegalTrademarks: Aypex
OriginalFilename: Aypex_FonixTool.exe
ProductName: Aypex_FonixTool
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Generic.Ransom.Fonix.2.B4BCBB0C also known as:

BkavW32.AIDetectNet.01
Elasticmalicious (moderate confidence)
MicroWorld-eScanGeneric.Ransom.Fonix.2.B4BCBB0C
FireEyeGeneric.mg.43e1229087019ba3
CAT-QuickHealTrojan.GenericPMF.S17216069
ALYacGeneric.Ransom.Fonix.2.B4BCBB0C
APEXMalicious
BitDefenderGeneric.Ransom.Fonix.2.B4BCBB0C
Ad-AwareGeneric.Ransom.Fonix.2.B4BCBB0C
EmsisoftGeneric.Ransom.Fonix.2.B4BCBB0C (B)
VIPREGeneric.Ransom.Fonix.2.B4BCBB0C
TrendMicroRansom.MSIL.CRYPTOLOCKER.SM.hp
SophosGeneric ML PUA (PUA)
IkarusTrojan-Downloader.Win32.Generic
GDataGeneric.Ransom.Fonix.2.B4BCBB0C
MAXmalware (ai score=84)
ArcabitGeneric.Ransom.Fonix.2.B4BCBB0C
GoogleDetected
MalwarebytesRiskWare.Agent
RisingTrojan.Generic/MSIL@AI.98 (RDM.MSIL:EKrkMPA140zfQpW8rr38pQ)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
Cybereasonmalicious.087019

How to remove Generic.Ransom.Fonix.2.B4BCBB0C?

Generic.Ransom.Fonix.2.B4BCBB0C removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment