Ransom

About “Generic.Ransom.SamSam.3D524387” infection

Malware Removal

The Generic.Ransom.SamSam.3D524387 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.SamSam.3D524387 virus can do?

  • Creates RWX memory
  • Exhibits behavior characteristic of iSpy Keylogger
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.SamSam.3D524387?


File Info:

crc32: 17F6CF88
md5: aa64d4c98835f3e29a41c47e027c78ef
name: AA64D4C98835F3E29A41C47E027C78EF.mlw
sha1: b41e5a0f17b2eedc516310ea64c83dc2bc2cb064
sha256: 0efe4ea1e7c83abd28175f59bd7fb4ca50212ff7509ce7e53fe0f6215397d4d4
sha512: 7c55bba52a3193a09dc67cc183f35ec2553051a1081758deb6867da8db5631691f684734a18248e84bf8120ac9442967c2e9749401636c06fae1901765c1eb81
ssdeep: 768:K0JPSh/E2mehlrA6M9zAgyT0jxsDOFXwCTwCpQB:fSR5rAB9zPygjx5XwCTwCpI
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: @2017
Assembly Version: 5.2.3.9
InternalName: WinDir.exe
FileVersion: 6.2.3.6
CompanyName: Microsoft
LegalTrademarks: Microsoft
Comments: Desktop Windows Manager
ProductName: Desktop Windows Manager
ProductVersion: 6.2.3.6
FileDescription: Desktop Windows Manager
OriginalFilename: WinDir.exe

Generic.Ransom.SamSam.3D524387 also known as:

K7AntiVirusTrojan ( 004ff8a31 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.6671
ALYacTrojan.Ransom.Samas
MalwarebytesMalware.AI.2056418218
ZillyaBackdoor.CPEX.Win32.35187
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:MSIL/Samas.31936e8c
K7GWTrojan ( 004ff8a31 )
Cybereasonmalicious.98835f
CyrenW32/Azorult.D.gen!Eldorado
SymantecInfostealer.Limitail
ESET-NOD32a variant of MSIL/Filecoder.Samas.B
APEXMalicious
AvastWin32:Ransom-AYO [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Ransom.MSIL.Generic
BitDefenderGeneric.Ransom.SamSam.3D524387
NANO-AntivirusTrojan.Win32.Barys.eheogm
ViRobotTrojan.Win32.S.SamSam.52224.G
MicroWorld-eScanGeneric.Ransom.SamSam.3D524387
TencentMalware.Win32.Gencirc.114b5cdf
Ad-AwareGeneric.Ransom.SamSam.3D524387
SophosMal/Generic-R + Troj/Samas-C
ComodoMalware@#157t74favefie
BitDefenderThetaGen:NN.ZemsilF.34790.dm0@aim6j@l
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_SAMAS.SMI0
McAfee-GW-EditionRansomware-FEF!AA64D4C98835
FireEyeGeneric.mg.aa64d4c98835f3e2
EmsisoftGeneric.Ransom.SamSam.3D524387 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Gen.BT
AviraHEUR/AGEN.1109348
Antiy-AVLTrojan/Generic.ASMalwS.29DEFE1
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftRansom:MSIL/Samas.E
ArcabitGeneric.Ransom.SamSam.3D524387
GDataGeneric.Ransom.SamSam.3D524387
AhnLab-V3Trojan/Win32.Samas.C1676066
McAfeeRansomware-FEF!AA64D4C98835
MAXmalware (ai score=100)
VBA32TScope.Trojan.MSIL
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_SAMAS.SMI0
YandexTrojan.Barys!z0YmsuVfbek
IkarusTrojan.MSIL.Filecoder
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/FilecoderSamas.B!tr.ransom
AVGWin32:Ransom-AYO [Trj]
Paloaltogeneric.ml

How to remove Generic.Ransom.SamSam.3D524387?

Generic.Ransom.SamSam.3D524387 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment