Ransom

Generic.Ransom.LockCrypt.F0A352C2 malicious file

Malware Removal

The Generic.Ransom.LockCrypt.F0A352C2 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.LockCrypt.F0A352C2 virus can do?

  • Attempts to connect to a dead IP:Port (2 unique times)
  • Expresses interest in specific running processes
  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Writes a potential ransom message to disk
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.LockCrypt.F0A352C2?


File Info:

crc32: 3A2CD289
md5: 93ecf05ce0da57dc65da008cf5bbdbf7
name: 93ECF05CE0DA57DC65DA008CF5BBDBF7.mlw
sha1: bd40388bb7719686771aa1208c6f2dc62589826b
sha256: 360c065b2b60390a16d909ff96432ecd7acd264a0176225a8fda9bd0efd13bd0
sha512: 378d550d212207023387e879bc63c7d028eba4f3f4399f27ca62cda87c51ad9f430644a4fe3ed9538decb960ee8ff2c161f6dde4a2774bfa6a9ab995adde9a2d
ssdeep: 384:mRpIJhUcmBmVTi4qiLgSLrmn2WQTdwYPDcYXf:mRsSZcVTEiLgSLqnXQmg/
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.LockCrypt.F0A352C2 also known as:

K7AntiVirusTrojan ( 005451b81 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.12135
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Sigmal.S2287696
ALYacTrojan.Ransom.Filecoder
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (D)
AlibabaTrojan:Win32/AntiAV.069af4b8
K7GWTrojan ( 005451b81 )
Cybereasonmalicious.ce0da5
CyrenW32/Threat-HLLSI-based!Maximus
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.NPA
APEXMalicious
AvastFileRepMalware
KasperskyHEUR:Trojan.Win32.AntiAV
BitDefenderGeneric.Ransom.LockCrypt.F0A352C2
NANO-AntivirusTrojan.Win32.AntiAV.fayvbd
MicroWorld-eScanGeneric.Ransom.LockCrypt.F0A352C2
TencentWin32.Trojan.Raas.Auto
Ad-AwareGeneric.Ransom.LockCrypt.F0A352C2
SophosMal/Generic-R + Mal/Ransom-FO
BitDefenderThetaAI:Packer.16AE8D281F
VIPREBehavesLike.Win32.Malware.wsc (mx-v)
TrendMicroRansom_GENASOM.SM
McAfee-GW-EditionBehavesLike.Win32.Generic.lm
FireEyeGeneric.mg.93ecf05ce0da57dc
EmsisoftGeneric.Ransom.LockCrypt.F0A352C2 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.AntiAV.alg
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1106794
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.25F33DE
MicrosoftRansom:Win32/Genasom
SUPERAntiSpywareRansom.Filecoder/Variant
GDataWin32.Trojan-Ransom.Filecoder.CG@gen
AhnLab-V3Malware/Win32.Generic.C2436577
McAfeeTrojan-FOQP!93ECF05CE0DA
MAXmalware (ai score=99)
VBA32BScope.Trojan.AntiAV
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_GENASOM.SM
RisingTrojan.Generic@ML.82 (RDML:YCUh+wqdBwFM6x1TIc7swA)
YandexTrojan.GenAsa!Zfq2Wvbcf0w
IkarusTrojan-Ransom.FileCrypter
FortinetW32/Generic.AC.403a48!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Generic.Ransom.LockCrypt.F0A352C2?

Generic.Ransom.LockCrypt.F0A352C2 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment