Ransom

Generic.Ransom.Hiddentear.A.538BAFDD (file analysis)

Malware Removal

The Generic.Ransom.Hiddentear.A.538BAFDD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Hiddentear.A.538BAFDD virus can do?

  • The binary likely contains encrypted or compressed data.
  • Unusual version info supplied for binary

How to determine Generic.Ransom.Hiddentear.A.538BAFDD?


File Info:

crc32: 6B297745
md5: d74158019c391c91f379629698cde820
name: D74158019C391C91F379629698CDE820.mlw
sha1: a066a983aff76d01f3532370b9bd9a54c7db9e1f
sha256: f045aecaa087224635a0109405cbeb2cabe948a6c0e8b8024a49e4efb05532f5
sha512: 400bb88fabc75d2f262958041c88500e4e46cc8109c12d914c6b140eebf2279cbf408afe7c31e5839cb0bef88ee35fba921a01fd4e10fa632dd0575a36cecb4d
ssdeep: 1536:NBzy7+2x+/m2x+kDgJF+2x+/m2x+kDgWGekNsGekNFuJGekNsGekNtl:jy71+l+kcJF1+l+kctphp5
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Microsoft Corporation xa9 2016
Assembly Version: 1.0.0.0
InternalName: Alphabet.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments: The critical updates for Windows 10.
ProductName: Windows 10 Critical Update Service
ProductVersion: 1.0.0.0
FileDescription: Windows 10 Critical Update Service
OriginalFilename: Alphabet.exe

Generic.Ransom.Hiddentear.A.538BAFDD also known as:

K7AntiVirusTrojan ( 00501d981 )
Elasticmalicious (high confidence)
CynetMalicious (score: 85)
ALYacTrojan.Ransom.Alphabet
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.4046
SangforTrojan.Win32.Filecoder.8
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:MSIL/Filecoder.d7005a22
K7GWTrojan ( 00501d981 )
Cybereasonmalicious.19c391
SymantecTrojan.Gen.2
ESET-NOD32a variant of MSIL/Filecoder.DU
APEXMalicious
AvastMSIL:Ransom-X [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Ransom.Hiddentear.A.538BAFDD
NANO-AntivirusTrojan.Win32.DelFile.ekqaxv
SUPERAntiSpywareRansom.Genasom/Variant
MicroWorld-eScanGeneric.Ransom.Hiddentear.A.538BAFDD
TencentWin32.Trojan.Delf.Wqmj
Ad-AwareGeneric.Ransom.Hiddentear.A.538BAFDD
SophosMal/Generic-S
ComodoMalware@#3ba5lqyc8ilzs
F-SecureHeuristic.HEUR/AGEN.1130184
BitDefenderThetaGen:NN.ZemsilF.34628.km0@aS8xZpb
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_ALPHABET.SM
McAfee-GW-EditionRansom-FBL!D74158019C39
FireEyeGeneric.Ransom.Hiddentear.A.538BAFDD
EmsisoftTrojan-Ransom.Alphabet (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Gen.cw
AviraHEUR/AGEN.1130184
MicrosoftTrojan:Win32/Vigorf.A
ArcabitGeneric.Ransom.Hiddentear.A.538BAFDD
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGeneric.Ransom.Hiddentear.A.538BAFDD
AhnLab-V3Trojan/Win32.Ransom.R192506
McAfeeRansom-FBL!D74158019C39
MAXmalware (ai score=100)
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_ALPHABET.SM
RisingRansom.FileCryptor!8.1A7 (CLOUD)
YandexTrojan.Gen!dQz1uglQPEk
IkarusTrojan.MSIL.Filecoder
FortinetMSIL/Filecoder.TA!tr
AVGMSIL:Ransom-X [Trj]
Qihoo-360HEUR/QVM03.0.7CC9.Malware.Gen

How to remove Generic.Ransom.Hiddentear.A.538BAFDD?

Generic.Ransom.Hiddentear.A.538BAFDD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment