Ransom

What is “Generic.Ransom.Locky.C662B91E”?

Malware Removal

The Generic.Ransom.Locky.C662B91E is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Locky.C662B91E virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Mimics the system’s user agent string for its own requests
  • The binary likely contains encrypted or compressed data.
  • Behavior consistent with a dropper attempting to download the next stage.
  • Exhibits behavior characteristic of Locky ransomware
  • Anomalous binary characteristics

Related domains:

eqqsawajmdjf.xyz
jnksalydsjtokdjr.pl
nxfybsgw.pw
frbgdumgoy.info
qdtsaijqxd.biz
yjkgreqsmonp.pl
sabihmmwgv.click
eqrvrthevmgcgqu.xyz
vsieoavv.biz
retpsdyegsrc.su

How to determine Generic.Ransom.Locky.C662B91E?


File Info:

crc32: E38601E8
md5: a4c98cd4837d057ebb3a2de9d0c8d294
name: A4C98CD4837D057EBB3A2DE9D0C8D294.mlw
sha1: c401effaaa1915102fd1212159063a1208128665
sha256: 62752454e6be0f5a7c95dcd20f7a04aa3ce91113d2da23028241dd4ce7156100
sha512: 1ffe3ce4f9490cc493384da6efacdb431116d60b32a3f55473687c3919cfd8fa78c213f2d1216ad56eed5cb6942132f82258c91bd32ff07d7af3a45ce9045b33
ssdeep: 3072:zkihF6pH6QBttXRDeFPUkupki/rOcvUFC++ft0Yk4UCWkEPr:ND6p6Gtx9lk42CFfeUEP
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

internalname: Aviators Maledictory
fileversion: 49.86.57.396
companyname: Ceremonialist
legaltrademarks: Conveying Friction
comments: Upstart
productname: Mille Cogence
productversion: 75.74.32.335
filedescription: Angularity
originalfilename: Hydromassage Menaces
Translation: 0x0209 0x0000

Generic.Ransom.Locky.C662B91E also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00522ab11 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.3976
CynetMalicious (score: 100)
ALYacDeepScan:Generic.Ransom.Locky.C662B91E
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.6920
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 00522ab11 )
Cybereasonmalicious.4837d0
SymantecTrojan Horse
ESET-NOD32a variant of Win32/Filecoder.Locky.C
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Ransomware.Locky-9804499-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderDeepScan:Generic.Ransom.Locky.C662B91E
NANO-AntivirusTrojan.Win32.Kryptik.evkbno
MicroWorld-eScanDeepScan:Generic.Ransom.Locky.C662B91E
TencentWin32.Trojan.Filecoder.Lnob
Ad-AwareDeepScan:Generic.Ransom.Locky.C662B91E
SophosML/PE-A + Mal/Ransom-EE
ComodoMalware@#3scmkf4vbj0oi
BitDefenderThetaAI:Packer.93D4B9EE20
VIPREBehavesLike.Win32.Malware.mmu (mx-v)
TrendMicroRansom_HPLOCKY.SMBOS
McAfee-GW-EditionRansomware-FRV!A4C98CD4837D
FireEyeGeneric.mg.a4c98cd4837d057e
EmsisoftDeepScan:Generic.Ransom.Locky.C662B91E (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Generic.bsfer
AviraTR/Crypt.ZPACK.Gen
MicrosoftRansom:Win32/Locky.A
GDataDeepScan:Generic.Ransom.Locky.C662B91E
Acronissuspicious
McAfeeRansomware-FRV!A4C98CD4837D
MAXmalware (ai score=100)
VBA32Trojan.Tiggre
MalwarebytesMalware.AI.176972408
PandaTrj/CI.A
TrendMicro-HouseCallRansom_HPLOCKY.SMBOS
RisingTrojan.Generic@ML.100 (RDML:qq2pZAMBoSY6A2MvjUjthg)
YandexTrojan.GenAsa!nIIaYGsW6W8
IkarusTrojan-Ransom.FileCrypter
FortinetW32/Kryptik.FEDN!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Locky.HwUBEpsA

How to remove Generic.Ransom.Locky.C662B91E?

Generic.Ransom.Locky.C662B91E removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment