Ransom

Generic.Ransom.Hiddentear.A.ABEDDA57 (file analysis)

Malware Removal

The Generic.Ransom.Hiddentear.A.ABEDDA57 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Hiddentear.A.ABEDDA57 virus can do?

  • Network activity detected but not expressed in API logs

How to determine Generic.Ransom.Hiddentear.A.ABEDDA57?


File Info:

crc32: C497208F
md5: 264e92d12cc3246f4375b5b8ee662daf
name: 264E92D12CC3246F4375B5B8EE662DAF.mlw
sha1: 1be049efd93a8409eae8011bf1f3a2fbad282cff
sha256: 427662a2957351bf696077293ca7a90b6f192b3cd7cde3d839fe3e5f98e8a7f3
sha512: 2144305a2c877be82311119bd830fd129380cc78fbf2c87d94127ebca38a3a87f55bf8b029a882105cc5fd5905da3e10fe6b9db5db50570a864377ae2466d2e2
ssdeep: 1536:W3xg10jhJs4SQHqM4yMREi+ABkQAXlPBnbb5g35zeLsnfrdKX/EG:WBgSgDvI+TCNBnbb5gcLoTEX/D
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: loki.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: loki.exe

Generic.Ransom.Hiddentear.A.ABEDDA57 also known as:

K7AntiVirusSpyware ( 0054d0041 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Siggen2.52967
CynetMalicious (score: 99)
CAT-QuickHealPUA.ViguaFC.S16692982
ALYacGeneric.Ransom.Hiddentear.A.ABEDDA57
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:MSIL/Evital.62043b6c
K7GWSpyware ( 0054d0041 )
Cybereasonmalicious.12cc32
CyrenW32/MSIL_Kryptik.DGZ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Spy.Agent.BYF
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
ClamAVWin.Ransomware.Hiddentear-9872794-0
KasperskyTrojan-Banker.MSIL.Evital.gen
BitDefenderGeneric.Ransom.Hiddentear.A.ABEDDA57
MicroWorld-eScanGeneric.Ransom.Hiddentear.A.ABEDDA57
Ad-AwareGeneric.Ransom.Hiddentear.A.ABEDDA57
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34050.fm0@aK9VfV
TrendMicroRansom_Loki.R002C0DH121
McAfee-GW-EditionGenericRXNQ-GP!264E92D12CC3
FireEyeGeneric.mg.264e92d12cc3246f
EmsisoftGeneric.Ransom.Hiddentear.A.ABEDDA57 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1127090
MicrosoftRansom:MSIL/Loki.DA!MTB
GDataGeneric.Ransom.Hiddentear.A.ABEDDA57
AhnLab-V3Trojan/Win32.RL_Evital.C4218554
McAfeeGenericRXNQ-GP!264E92D12CC3
MAXmalware (ai score=83)
VBA32Trojan.MSIL.gen.11
MalwarebytesSpyware.LokiStealer.Generic
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_Loki.R002C0DH121
RisingStealer.Agent!1.B723 (CLASSIC)
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.BYF!tr
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.LokiBot.HgIASZkA

How to remove Generic.Ransom.Hiddentear.A.ABEDDA57?

Generic.Ransom.Hiddentear.A.ABEDDA57 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment