Ransom

Generic.Ransom.Hiddentear.A.8502C08A malicious file

Malware Removal

The Generic.Ransom.Hiddentear.A.8502C08A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Hiddentear.A.8502C08A virus can do?

  • Executable code extraction
  • Creates RWX memory
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Looks up the external IP address

Related domains:

redirector.gvt1.com
r8—sn-bpb5oxu-3c2r.gvt1.com
checkip.dyndns.org
saad.eu5.org
err.freewebhostingarea.com

How to determine Generic.Ransom.Hiddentear.A.8502C08A?


File Info:

crc32: 40A82C06
md5: 3a27b49845a3ae4671fa69c2051c2cb6
name: 3A27B49845A3AE4671FA69C2051C2CB6.mlw
sha1: 71caed58a603d1ab2a52d02e0822b1ab8f1a9095
sha256: 597a14a76fc4d6315afa877ef87b68401de45d852e38f98c2f43986b4dca1c3a
sha512: 14975a80e872b5a762c06d6476a9a6052501fbd5538832f43498132cc8d932176058e63537571e1f43a69c24f1ee833e1605d3be5f23a18e2964461193a96dab
ssdeep: 12288:oyYvT+g5AdMas07c5KFKBI1nX4T+waadaKOxV3rRRwT:oJK9po5KKBQK+waaT2V3Dw
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2016
Assembly Version: 1.0.0.0
InternalName: SNSLocker.exe
FileVersion: 1.0.0.0
ProductName: SNSLocker
ProductVersion: 1.0.0.0
FileDescription: SNSLocker
OriginalFilename: SNSLocker.exe

Generic.Ransom.Hiddentear.A.8502C08A also known as:

K7AntiVirusRiskware ( 0040eff71 )
DrWebTrojan.Encoder.4614
CynetMalicious (score: 99)
CAT-QuickHealRansom.SNSLocker.A3
ALYacGeneric.Ransom.Hiddentear.A.8502C08A
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.2678
SangforRansom.Win32.Hiddentear.A
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:MSIL/Flyterper.7ccd4ce3
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.845a3a
SymantecRansom.HiddenTear
ESET-NOD32a variant of MSIL/Filecoder.BH
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Ransom.Hiddentear.A.8502C08A
NANO-AntivirusTrojan.Win32.Encoder.edefog
ViRobotTrojan.Win32.S.Ransom.815104.A
MicroWorld-eScanGeneric.Ransom.Hiddentear.A.8502C08A
Ad-AwareGeneric.Ransom.Hiddentear.A.8502C08A
SophosMal/Generic-R + Troj/Ransom-DFN
ComodoMalware@#l0qff6fijns4
BitDefenderThetaGen:NN.ZemsilF.34692.Xm0@auMWl0d
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_SNSLOCK.A
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.Ransom.Hiddentear.A.8502C08A
EmsisoftGeneric.Ransom.Hiddentear.A.8502C08A (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Generic.yztl
WebrootTrojan.Snslocker
AviraTR/Ransom.Loky.815104
Antiy-AVLTrojan/Generic.ASMalwS.18B0FC2
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:MSIL/Cryptolocker.PDM!MTB
GDataGeneric.Ransom.Hiddentear.A.8502C08A
TACHYONRansom/W32.DN-SNSLocker.815104
McAfeeArtemis!3A27B49845A3
MAXmalware (ai score=100)
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_SNSLOCK.A
RisingRansom.HiddenTear!1.C48F (CLASSIC)
YandexTrojan.Agent!CnjLvbUUu6E
IkarusTrojan.MSIL.Filecoder
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Filecoder.TA!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Generic.Ransom.Hiddentear.A.8502C08A?

Generic.Ransom.Hiddentear.A.8502C08A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment