Ransom

Generic.Ransom.HydraCrypt.4F03522A (file analysis)

Malware Removal

The Generic.Ransom.HydraCrypt.4F03522A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.HydraCrypt.4F03522A virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Generic.Ransom.HydraCrypt.4F03522A?


File Info:

crc32: 62479CA9
md5: 5fdd9de16d77ff57ae07c979bb6e04ed
name: 5FDD9DE16D77FF57AE07C979BB6E04ED.mlw
sha1: b05fb897151c8f8e83075b56a62423f62a201d16
sha256: 1bebc9a67e2c3ba63f7cb624b683531821d9ae86ff005be6c66ffcb5ed805d9d
sha512: 827190f4399e50f6a3a220373f32b89b083b63919b8d45296988ddd468dbd8fb3163f5161cbcc7ec22c3b608059ff90f32e6734f525586e259575d6de748faec
ssdeep: 384:z3Mg/bqo2mcxtivp1AN4+X0Z/NJWr91CgGxb55ew:Fqo2ptMp1g4+kR7Wr9Uxbfew
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: test.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: test.exe

Generic.Ransom.HydraCrypt.4F03522A also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Encoder.10598
ClamAVWin.Ransomware.Hydracrypt-9878672-0
ALYacGeneric.Ransom.HydraCrypt.4F03522A
CylanceUnsafe
SangforTrojan.Win32.Save.a
CyrenW32/Azorult.D.gen!Eldorado
SymantecRansom.HiddenTear!g1
ESET-NOD32a variant of MSIL/Filecoder.AGP
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.MSIL.Fsysna.gen
BitDefenderGeneric.Ransom.HydraCrypt.4F03522A
MicroWorld-eScanGeneric.Ransom.HydraCrypt.4F03522A
Ad-AwareGeneric.Ransom.HydraCrypt.4F03522A
SophosML/PE-A
F-SecureHeuristic.HEUR/AGEN.1138919
BitDefenderThetaGen:NN.ZemsilF.34058.bm0@amthA8d
TrendMicroRansom.MSIL.CHAOS.SMYPBHET
McAfee-GW-EditionBehavesLike.Win32.Trojan.mm
FireEyeGeneric.mg.5fdd9de16d77ff57
EmsisoftGeneric.Ransom.HydraCrypt.4F03522A (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1138919
eGambitUnsafe.AI_Score_98%
MicrosoftRansom:MSIL/ApisCryptor.PAA!MTB
ArcabitGeneric.Ransom.HydraCrypt.4F03522A
GDataMSIL.Trojan-Ransom.Remind.B
AhnLab-V3Ransomware/Win.FTD.C4580181
McAfeeRansomware-FTD!5FDD9DE16D77
MAXmalware (ai score=89)
MalwarebytesRansom.Chaos
PandaTrj/GdSda.A
RisingRansom.Destructor!1.B060 (CLASSIC)
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Filecoder.24EB!tr.ransom
AVGWin32:RansomX-gen [Ransom]
Qihoo-360HEUR/QVM03.0.3D7B.Malware.Gen

How to remove Generic.Ransom.HydraCrypt.4F03522A?

Generic.Ransom.HydraCrypt.4F03522A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment