Ransom

About “Generic.Ransom.Hiddentear.A.701B1DB0” infection

Malware Removal

The Generic.Ransom.Hiddentear.A.701B1DB0 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Hiddentear.A.701B1DB0 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.Hiddentear.A.701B1DB0?


File Info:

crc32: 1311F876
md5: 682b432662affb2812ece6b940f5be51
name: 682B432662AFFB2812ECE6B940F5BE51.mlw
sha1: 3f8b1c378b8d3839771deed83501a18f20942987
sha256: 108f89f42710b4cf2f400a9505a7ef8cfa703a482f11eb700b8b97afb72a3c22
sha512: 8e4d8c3e45feca507e1083259b4a9abc32f66914b0b0d0d40cc91dfb45185e50d4f912ba183e08dbd65d905956ffddba2d67e2e3ba61389c557823c8403cfed1
ssdeep: 3072:hm7bCy11BgVjo+biCF2+DF5S+gRo2o41qSlh8fuz+WSMzZrsfyb50E3QBSfUqK1:eOa6dDcRJqSwfunCyd0E3QMfhqK3cC
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2020
Assembly Version: 1.0.0.0
InternalName: NoCry.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: NoCry
ProductVersion: 1.0.0.0
FileDescription: NoCry
OriginalFilename: NoCry.exe

Generic.Ransom.Hiddentear.A.701B1DB0 also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 99)
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacGeneric.Ransom.Hiddentear.A.701B1DB0
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
Cybereasonmalicious.662aff
ESET-NOD32a variant of MSIL/Filecoder.AFL
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
KasperskyHEUR:Trojan-Ransom.Win32.Generic
BitDefenderGeneric.Ransom.Hiddentear.A.701B1DB0
MicroWorld-eScanGeneric.Ransom.Hiddentear.A.701B1DB0
Ad-AwareGeneric.Ransom.Hiddentear.A.701B1DB0
SophosMal/Genasom-A
BitDefenderThetaGen:NN.ZemsilF.34722.nm0@a4ZSiWe
TrendMicroRansom.MSIL.NOCRY.SMLD
FireEyeGeneric.mg.682b432662affb28
EmsisoftGeneric.Ransom.Hiddentear.A.701B1DB0 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.Gen
MicrosoftRansom:MSIL/NoCry.AS!MTB
ArcabitGeneric.Ransom.Hiddentear.A.701B1DB0
GDataGeneric.Ransom.Hiddentear.A.701B1DB0
AhnLab-V3Malware/Win32.RL_Generic.C4316954
MAXmalware (ai score=86)
VBA32TScope.Trojan.MSIL
MalwarebytesMalware.AI.4154580173
TrendMicro-HouseCallRansom.MSIL.NOCRY.SMLD
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Filecoder.TA!tr
AVGWin32:MalwareX-gen [Trj]

How to remove Generic.Ransom.Hiddentear.A.701B1DB0?

Generic.Ransom.Hiddentear.A.701B1DB0 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment