Ransom

Generic.Ransom.Hiddentear.A.CEF5A841 malicious file

Malware Removal

The Generic.Ransom.Hiddentear.A.CEF5A841 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Hiddentear.A.CEF5A841 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.Hiddentear.A.CEF5A841?


File Info:

crc32: 462FA1F3
md5: aeea47e7e2131746d0d93dd1ad2f45a6
name: AEEA47E7E2131746D0D93DD1AD2F45A6.mlw
sha1: ea5da2f1d74a817599a08fe86aa22cc553c9d03a
sha256: 404e14501711b315bb09adfbf3ea07cdc45b818e887012fd7e199f8c7d8721bd
sha512: 79840503d5a365c92f918e71f98b6611ff0aab06b422b89f2fa4d2b63b59bc7801204e6aadfc0a5242a3e048ad1376a3ea0bb9e361f2d2a78fdd974f5ed81006
ssdeep: 3072:7m7bCy11BgVjo+biCFO+DF5SCehgRo2o41qSlh8fuz+WSMzZrsfyb50E3QBSfUq:gOa6dD/RJqSwfunCyd0E3QMfhqK3c
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2020
Assembly Version: 1.0.0.0
InternalName: NoCry.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: NoCry
ProductVersion: 1.0.0.0
FileDescription: NoCry
OriginalFilename: NoCry.exe

Generic.Ransom.Hiddentear.A.CEF5A841 also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacGeneric.Ransom.Hiddentear.A.CEF5A841
SangforTrojan.Win32.Save.a
BitDefenderGeneric.Ransom.Hiddentear.A.CEF5A841
Cybereasonmalicious.7e2131
ESET-NOD32a variant of MSIL/Filecoder.AFL
APEXMalicious
KasperskyHEUR:Trojan-Ransom.Win32.Generic
MicroWorld-eScanGeneric.Ransom.Hiddentear.A.CEF5A841
Ad-AwareGeneric.Ransom.Hiddentear.A.CEF5A841
SophosMal/Genasom-A
F-SecureTrojan.TR/Dropper.Gen
BitDefenderThetaGen:NN.ZemsilF.34690.nm0@ai73yYm
FireEyeGeneric.Ransom.Hiddentear.A.CEF5A841
EmsisoftGeneric.Ransom.Hiddentear.A.CEF5A841 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.Gen
MicrosoftRansom:MSIL/NoCry.AS!MTB
ArcabitGeneric.Ransom.Hiddentear.A.CEF5A841
GDataGeneric.Ransom.Hiddentear.A.CEF5A841
AhnLab-V3Malware/Win32.RL_Generic.C4316954
MAXmalware (ai score=83)
MalwarebytesMalware.AI.4154580173
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Filecoder.TA!tr

How to remove Generic.Ransom.Hiddentear.A.CEF5A841?

Generic.Ransom.Hiddentear.A.CEF5A841 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment