Ransom

What is “Generic.Ransom.Hermes.D2F778A0”?

Malware Removal

The Generic.Ransom.Hermes.D2F778A0 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Hermes.D2F778A0 virus can do?

  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Writes a potential ransom message to disk
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.Hermes.D2F778A0?


File Info:

crc32: CE4DC5B7
md5: d42d0c40d2b5166eeaa82c52a9c7a8e5
name: D42D0C40D2B5166EEAA82C52A9C7A8E5.mlw
sha1: 067c656544ba68e95eb5ced4ffd2c2338428c97d
sha256: 40439854cc2ca6854f21ccfd7717bf0df86c6c24a8db52be901938ff331ce26d
sha512: 1543a63ff7dea184372663f55dd0adcdba46d6a0b48a74692dd2a2b6bec482381a3b8235890a6c7a2db47b64e288a7ab544da51df42de15260ed68cd9c5df3c6
ssdeep: 768:2IqPfWwEhOa8RsjuaBG2ZqrBEFS/5B12KwAoPU+6r:63EhO0jFZcBEFS/5T2pnu
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.Hermes.D2F778A0 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.10700
CynetMalicious (score: 100)
ALYacTrojan.Ransom.Hermes
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.0d2b51
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.Hermes.I
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Ransom.Hermes.D2F778A0
NANO-AntivirusTrojan.Win32.Hermez.fbdvrv
MicroWorld-eScanGeneric.Ransom.Hermes.D2F778A0
TencentWin32.Trojan.Raas.Auto
Ad-AwareGeneric.Ransom.Hermes.D2F778A0
SophosMal/Generic-S
ComodoMalware@#y4uajea8q0r2
BitDefenderThetaGen:NN.ZexaF.34790.duW@aWXJO7
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_HERMES.THEAFAH
McAfee-GW-EditionGeneric.dst
FireEyeGeneric.mg.d42d0c40d2b5166e
EmsisoftGeneric.Ransom.Hermes.D2F778A0 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.2602006
MicrosoftRansom:Win32/Hermes.A!bit
ArcabitGeneric.Ransom.Hermes.D2F778A0
GDataGeneric.Ransom.Hermes.D2F778A0
AhnLab-V3Malware/Win32.Generic.C2469585
McAfeeGeneric.dst
MAXmalware (ai score=100)
VBA32BScope.Trojan.Encoder
MalwarebytesMalware.AI.3247914321
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_HERMES.THEAFAH
RisingRansom.Hermes!1.B331 (CLASSIC)
YandexTrojan.GenAsa!I5gBO5pxIAg
IkarusTrojan-Ransom.Hermes
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Filecoder.I!tr.ransom
AVGWin32:RansomX-gen [Ransom]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Hermes.HxQBEpsA

How to remove Generic.Ransom.Hermes.D2F778A0?

Generic.Ransom.Hermes.D2F778A0 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment