Ransom

How to remove “Generic.Ransom.Nemty.145DCDED”?

Malware Removal

The Generic.Ransom.Nemty.145DCDED is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Nemty.145DCDED virus can do?

  • Attempts to connect to a dead IP:Port (2 unique times)
  • Performs some HTTP requests
  • Looks up the external IP address

Related domains:

myexternalip.com
ocsp.pki.goog

How to determine Generic.Ransom.Nemty.145DCDED?


File Info:

crc32: FB77DBE0
md5: ff41f4bf24c71195c8ec936c6c6ce784
name: FF41F4BF24C71195C8EC936C6C6CE784.mlw
sha1: c816811d73f7e5a5f84e021d8d3d3f5582685ae5
sha256: d5d56fb1b36b153ead90c25c4b196e40c292283033388a625955d41012b56ec2
sha512: 6576ebcc43f7bc20e2b96b97b0ab753c698273f32f6e8279d9149b930598d25b2a34f892d224d623cebbb00f839b0f254602915e533f24daff841bb434971201
ssdeep: 1536:3NLiLF0dheEJA/QCFouCdMMU48urgPmuuCkpbf3iXDolIy4k:9LiB0dhw/TouCd0+UuffzlWk
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.Nemty.145DCDED also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 00566c1d1 )
LionicTrojan.Win32.Gen.j!c
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.29417
CynetMalicious (score: 100)
CAT-QuickHealRansom.Nemty.S13913778
ALYacTrojan.Ransom.Nemty
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Genasom.ali1000102
K7GWTrojan ( 00566c1d1 )
Cybereasonmalicious.f24c71
CyrenW32/Ransom.OADB-5170
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.Nemty.F
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan-Ransom.Win32.JSWorm.co
BitDefenderGeneric.Ransom.Nemty.145DCDED
NANO-AntivirusTrojan.Win32.Encoder.hkrtzm
MicroWorld-eScanGeneric.Ransom.Nemty.145DCDED
TencentWin32.Trojan.Gen.Efkj
Ad-AwareGeneric.Ransom.Nemty.145DCDED
SophosMal/Generic-R + Mal/Nemty-Gen
F-SecureTrojan.TR/Redcap.dkang
BitDefenderThetaGen:NN.ZexaF.34790.fqW@ayQuDbc
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXKW-ZD!FF41F4BF24C7
FireEyeGeneric.mg.ff41f4bf24c71195
EmsisoftGeneric.Ransom.Nemty.145DCDED (B)
WebrootW32.Gen.wzr
AviraTR/Redcap.dkang
Antiy-AVLTrojan/Generic.ASMalwS.3084795
MicrosoftRansom:Win32/FileCoder.D!MTB
ArcabitGeneric.Ransom.Nemty.145DCDED
ZoneAlarmTrojan-Ransom.Win32.JSWorm.co
GDataGeneric.Ransom.Nemty.145DCDED
AhnLab-V3Trojan/Win32.Nemty.C4108985
McAfeeGenericRXKW-ZD!FF41F4BF24C7
MAXmalware (ai score=100)
VBA32BScope.TrojanRansom.Cryptor
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/GdSda.A
RisingRansom.NEFILIM!1.C3E7 (CLASSIC)
YandexTrojan.Filecoder!lOpXFTXPzyk
IkarusTrojan-Ransom.Nemty
MaxSecureTrojan.Malware.101803904.susgen
FortinetW32/Nemty.F!tr.ransom
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Filecoder.HgIASQ0A

How to remove Generic.Ransom.Nemty.145DCDED?

Generic.Ransom.Nemty.145DCDED removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment