Ransom

Generic.Ransom.Koolova.DBCBF750 removal tips

Malware Removal

The Generic.Ransom.Koolova.DBCBF750 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Koolova.DBCBF750 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.Koolova.DBCBF750?


File Info:

crc32: C6CAA533
md5: c772c4e23ba8ca3712275873376d0b58
name: C772C4E23BA8CA3712275873376D0B58.mlw
sha1: de28dd03d3479a8d1268f9f396c1a9ca4efc51b5
sha256: b3c1796112f5f7e022bc4b1f6cd992b7abc34713b274160137da0d7e217ab900
sha512: 0380e0219399dd40ffc5a8100274e0a21f2f90db220f7ab42a4fcb245ed4994b14461f84f6642e36f658976a3dafaccb77a157fc6553277be5108eaa8e22cda5
ssdeep: 768:BBR6ADKNP/41KNda3i6BXTPB7d0kAF10ttSwU+:zRjWNUwdTiXbBx0ki2tSwh
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2015
Assembly Version: 1.0.0.0
InternalName: DUMB.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: DUMB
ProductVersion: 1.0.0.0
FileDescription: DUMB
OriginalFilename: DUMB.exe

Generic.Ransom.Koolova.DBCBF750 also known as:

K7AntiVirusTrojan ( 0056a4581 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.15077
CynetMalicious (score: 100)
CAT-QuickHealTrojan.IgenericFC.S13562524
ALYacGeneric.Ransom.Koolova.DBCBF750
ZillyaTrojan.Filecoder.Win32.17704
K7GWTrojan ( 0056a4581 )
Cybereasonmalicious.23ba8c
ESET-NOD32a variant of MSIL/Filecoder.DY
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
ClamAVWin.Ransomware.Koolova-9850494-0
KasperskyHEUR:Trojan-Ransom.MSIL.Encoder.gen
BitDefenderGeneric.Ransom.Koolova.DBCBF750
MicroWorld-eScanGeneric.Ransom.Koolova.DBCBF750
Ad-AwareGeneric.Ransom.Koolova.DBCBF750
SophosMal/Crypdum-A
F-SecureHeuristic.HEUR/AGEN.1133963
BitDefenderThetaGen:NN.ZemsilF.34758.cm0@aGsbJE
FireEyeGeneric.Ransom.Koolova.DBCBF750
EmsisoftGeneric.Ransom.Koolova.DBCBF750 (B)
SentinelOneStatic AI – Suspicious PE
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1133963
Antiy-AVLTrojan/Generic.ASMalwS.319E915
MicrosoftRansom:MSIL/FileCoder.PA!MTB
ArcabitGeneric.Ransom.Koolova.DBCBF750
GDataMSIL.Trojan-Ransom.Filecoder.AN
AhnLab-V3Trojan/Win32.Occamy.C2499816
MAXmalware (ai score=81)
VBA32TScope.Trojan.MSIL
MalwarebytesTrojan.FileCryptor
PandaTrj/GdSda.A
IkarusTrojan.MSIL.Filecoder
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Filecoder.DY!tr.ransom
AVGWin32:RansomX-gen [Ransom]

How to remove Generic.Ransom.Koolova.DBCBF750?

Generic.Ransom.Koolova.DBCBF750 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment