Ransom

Generic.Ransom.Nemty.5E50AD57 information

Malware Removal

The Generic.Ransom.Nemty.5E50AD57 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Nemty.5E50AD57 virus can do?

  • Presents an Authenticode digital signature
  • Attempts to modify desktop wallpaper
  • Exhibits possible ransomware file modification behavior
  • Writes a potential ransom message to disk
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.Nemty.5E50AD57?


File Info:

crc32: 249D4A0E
md5: 3beb3d466bcc0977ec2dd66d72ab6bb3
name: tmp2egt2x8z
sha1: e94089137a41fd95c790f88cc9b57c2b4d5625ba
sha256: b227fa0485e34511627a8a4a7d3f1abb6231517be62d022916273b7a51b80a17
sha512: 2d6fc985f4292f1945dc8caaf73286815d3ef834be0f6b07a19b0f9c0faa9b8c2022ef2fddc8925dbfee9a4bdcce553cb996c44abe8b7baf3a16c8c6d2c28ef7
ssdeep: 384:AXMTdRam+CzPnvvLjjXbee9hNBxNIIjNsJwaYmfWmoBMnCPpLvdm5+nIQV9O2gpT:AXzaBsDemFGjmOV9CULMma
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.Nemty.5E50AD57 also known as:

CynetMalicious (score: 85)
FireEyeGeneric.mg.3beb3d466bcc0977
CAT-QuickHealRansom.Nemty.S13913780
McAfeeRansom-Neph!3BEB3D466BCC
MalwarebytesRansom.Nefilim
ZillyaTrojan.Cryptor.Win32.485
SangforMalware
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Cryptor.28491d22
K7GWTrojan ( 00566c1d1 )
K7AntiVirusTrojan ( 00566c1d1 )
Invinceaheuristic
CyrenW32/Trojan.UZYI-6885
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Filecoder.Nemty.F
APEXMalicious
Paloaltogeneric.ml
GDataGeneric.Ransom.Nemty.5E50AD57
KasperskyTrojan-Ransom.Win32.Cryptor.dev
BitDefenderGeneric.Ransom.Nemty.5E50AD57
NANO-AntivirusTrojan.Win32.Cryptor.hhvtvq
ViRobotTrojan.Win32.S.Nefilim.18424
MicroWorld-eScanGeneric.Ransom.Nemty.5E50AD57
AvastWin32:DangerousSig [Trj]
TencentWin32.Trojan.Cryptor.Loil
Ad-AwareGeneric.Ransom.Nemty.5E50AD57
SophosMal/BadCert-Gen
ComodoMalware@#twwi1rtuxv41
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.Encoder.31414
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojan.Win32.MALREP.THDOABO
McAfee-GW-EditionRansom-Neph!3BEB3D466BCC
MaxSecureTrojan.Malware.82359714.susgen
EmsisoftMalCert.A (A)
SentinelOneDFI – Malicious PE
JiangminTrojan.Cryptor.qs
WebrootW32.Ransom.Gen
AviraTR/Crypt.XPACK.Gen
Endgamemalicious (high confidence)
ArcabitGeneric.Ransom.Nemty.5E50AD57
AegisLabTrojan.Win32.Cryptor.j!c
ZoneAlarmTrojan-Ransom.Win32.Cryptor.dev
MicrosoftRansom:Win32/Nemty.MMV!MTB
TACHYONRansom/W32.Nephilim.18424
AhnLab-V3Trojan/Win32.Nemty.C4089140
VBA32BScope.TrojanRansom.Cryptor
ALYacTrojan.Ransom.Nefilim
MAXmalware (ai score=89)
CylanceUnsafe
TrendMicro-HouseCallTrojan.Win32.MALREP.THDOABO
RisingRansom.NEFILIM!1.C3E7 (CLOUD)
IkarusTrojan-Ransom.Nemty
eGambitUnsafe.AI_Score_94%
FortinetW32/Cryptor.DEV!tr.ransom
BitDefenderThetaGen:NN.ZexaF.34128.bqX@aiIWeWg
AVGWin32:DangerousSig [Trj]
Cybereasonmalicious.66bcc0
PandaTrj/CI.A
Qihoo-360Trojan.Generic

How to remove Generic.Ransom.Nemty.5E50AD57?

Generic.Ransom.Nemty.5E50AD57 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment