Ransom

What is “Generic.Ransom.Hiddentear.A.0FDE403D”?

Malware Removal

The Generic.Ransom.Hiddentear.A.0FDE403D is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Hiddentear.A.0FDE403D virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Generic.Ransom.Hiddentear.A.0FDE403D?


File Info:

crc32: A9866BA0
md5: e85c1e1098bd65c6d05525eaefece492
name: E85C1E1098BD65C6D05525EAEFECE492.mlw
sha1: 66f52416907930b2398d70fd685ab18a439d9b1c
sha256: a2440eb4685ef7a99f3225f4869882d3372d37c45b274aafc5fc0d7f439c51aa
sha512: 788d492f5676b8460ccaeac99dd839476fa8d092f133883cf6415682d4d8409c3fb87dd529e444435d27150ffc04eab775fe19892a8bf9b4e1ddb74010c1a5d5
ssdeep: 384:BB4YeNJYxUufPEG+QvllTeLTUgDo4lNV:0YeNJYtfPEfOllAXV
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: DECRYPT.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: DECRYPT.exe

Generic.Ransom.Hiddentear.A.0FDE403D also known as:

K7AntiVirusTrojan ( 0052a44b1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealTrojan.YmaccoFC.S19436709
ALYacGeneric.Ransom.Hiddentear.A.0FDE403D
CylanceUnsafe
ZillyaTool.FakeFilecoder.Win32.303
K7GWTrojan ( 00578fe61 )
Cybereasonmalicious.098bd6
ESET-NOD32a variant of MSIL/Hoax.FakeFilecoder.GZ
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
ClamAVWin.Ransomware.Hiddentear-9871550-0
BitDefenderGeneric.Ransom.Hiddentear.A.0FDE403D
MicroWorld-eScanGeneric.Ransom.Hiddentear.A.0FDE403D
Ad-AwareGeneric.Ransom.Hiddentear.A.0FDE403D
BitDefenderThetaGen:NN.ZemsilCO.34790.bm0@aii@kun
McAfee-GW-EditionBehavesLike.Win32.Trojan.mz
FireEyeGeneric.Ransom.Hiddentear.A.0FDE403D
EmsisoftGeneric.Ransom.Hiddentear.A.0FDE403D (B)
SentinelOneStatic AI – Suspicious PE
eGambitUnsafe.AI_Score_98%
GDataGeneric.Ransom.Hiddentear.A.0FDE403D
AhnLab-V3Dropper/Win32.Agent.C110361
McAfeeGenericRXNV-GR!E85C1E1098BD
MAXmalware (ai score=89)
MalwarebytesMalware.AI.2999032588
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Filecoder.5AE6!tr.ransom
AVGWin32:MalwareX-gen [Trj]

How to remove Generic.Ransom.Hiddentear.A.0FDE403D?

Generic.Ransom.Hiddentear.A.0FDE403D removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment