Ransom

Generic.Ransom.GandCrab.B9713CB5 removal guide

Malware Removal

The Generic.Ransom.GandCrab.B9713CB5 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.GandCrab.B9713CB5 virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • CAPE detected the Gandcrab malware family

How to determine Generic.Ransom.GandCrab.B9713CB5?


File Info:

name: 91D407A157EE0174C65A.mlw
path: /opt/CAPEv2/storage/binaries/bbc9df2bcc184f211b607743f283c1e8f34da18b09391d7bf7a5338fabf25c71
crc32: 179BB873
md5: 91d407a157ee0174c65a03dd8ab836bc
sha1: 2079b680925b3c7306b5604b5131b599bf501f58
sha256: bbc9df2bcc184f211b607743f283c1e8f34da18b09391d7bf7a5338fabf25c71
sha512: d5693e4fce8e7ae309c9b638ee662dc6fe9e3717cbd3872e8ded1416be490b357173fd9989edcb962a8e554ac650f9523d1cfdc6caec7ef165f63bd1b03c983f
ssdeep: 3072:P7KImWlOVTntqSQRruiMZMqqDL2/AwvdJC7Vjp9:TiVDtORruiMyqqDL6tvdep9
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T193F39D187AD19072F2F34676E9B47D210B6E3D203F549EDB2BA615EE19310F0693AB13
sha3_384: 9bc2830de36506571072b3cd6ccc1418eb7da9e7860f997c96f9eb299daf1effd3b891a7bc4150fe4830edc04b250b66
ep_bytes: 00000000000000000000000000000000
timestamp: 2018-04-12 20:41:02

Version Info:

0: [No Data]

Generic.Ransom.GandCrab.B9713CB5 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.GandCrab.4!c
DrWebTrojan.Encoder.35853
MicroWorld-eScanGeneric.Ransom.GandCrab.B9713CB5
ClamAVWin.Ransomware.Gandcrab-9967305-0
FireEyeGeneric.mg.91d407a157ee0174
ALYacGeneric.Ransom.GandCrab.B9713CB5
Cylanceunsafe
SangforRansom.Win32.Gandcrab_46.se2
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/GandCrab.28490536
K7GWRiskware ( 00584baa1 )
K7AntiVirusRiskware ( 00584baa1 )
CyrenW32/Kryptik.HKH.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGeneric.Ransom.GandCrab.B9713CB5
AvastWin32:Kryptik-PST [Trj]
RisingRansom.GandCrab!1.B8D6 (CLASSIC)
EmsisoftGeneric.Ransom.GandCrab.B9713CB5 (B)
VIPREGeneric.Ransom.GandCrab.B9713CB5
TrendMicroRansom.Win32.GANDCRAB.SM1
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
Trapminemalicious.high.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.M62GXR
Antiy-AVLTrojan[Ransom]/Win32.GandCrab
ArcabitGeneric.Ransom.GandCrab.B9713CB5
MicrosoftRansom:Win32/GandCrab.AE
GoogleDetected
AhnLab-V3Trojan/Win32.Gandcrab.R350638
Acronissuspicious
McAfeeArtemis!91D407A157EE
MAXmalware (ai score=84)
VBA32BScope.Trojan.Chapak
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/CI.A
TrendMicro-HouseCallRansom.Win32.GANDCRAB.SM1
TencentTrojan-Ransom.Win32.GandCrab.16000553
IkarusTrojan-Ransom.GandCrab
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GandCrab.FD88!tr.ransom
AVGWin32:Kryptik-PST [Trj]
DeepInstinctMALICIOUS

How to remove Generic.Ransom.GandCrab.B9713CB5?

Generic.Ransom.GandCrab.B9713CB5 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment