Ransom

How to remove “Generic.Ransom.Small.12C0E3B1”?

Malware Removal

The Generic.Ransom.Small.12C0E3B1 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware - Review 2020

GridinSoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend to use GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the TRIAL period.
6-day free trial available.

What Generic.Ransom.Small.12C0E3B1 virus can do?

  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid

How to determine Generic.Ransom.Small.12C0E3B1?


File Info:

name: 93182329814953D36FDA.mlw
path: /opt/CAPEv2/storage/binaries/c7ae4f3e1667ffa12be467f2ec188bd6f302d36c3bd0f872fce8de0ce263fb5d
crc32: 8876E174
md5: 93182329814953d36fda9ef051ebcff4
sha1: 8c4b6e3ba67fd683e6aad7ac66fb41ce279dddf1
sha256: c7ae4f3e1667ffa12be467f2ec188bd6f302d36c3bd0f872fce8de0ce263fb5d
sha512: 6e45049f93a3965ae2ce6f00d6c471907bc509a7bd1760d9092cde1e06804423a2c15e8ab62687022be4b6220870f5654c0754f478c4ffb8b0a860686526726a
ssdeep: 384:BcZCpqIQ0D+RztA22lbqIHK+HQecixmf7W8:BcZC4ZGhb1j4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18382E8642BE89237F17B3F3A59E1659107B5B962D82ECA5D148C11CAC96270CDFE0B31
sha3_384: e5d713cfff1c092e1def0eb14ec75f89ec0f26080f38a0f600d83236eb4e9d52df9516687dbf153981a754fd1904fb08
ep_bytes: ff250020400000000000000000000000
timestamp: 2020-05-16 20:23:26

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName: Microsoft
FileDescription: SSvchost
FileVersion: 1.0.0.0
InternalName: ssvchost.exe
LegalCopyright: Copyright © Microsoft 2018
LegalTrademarks:
OriginalFilename: ssvchost.exe
ProductName: SSvchost
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Generic.Ransom.Small.12C0E3B1 also known as:

LionicTrojan.MSIL.DelShad.4!c
CynetMalicious (score: 100)
McAfeeGenericRXMF-AX!931823298149
MalwarebytesRansom.FileCryptor
VIPREGeneric.Ransom.Small.12C0E3B1
SangforRansom.Win32.FileCoder.C!MTB
K7AntiVirusTrojan ( 0056429b1 )
AlibabaTrojan:MSIL/FileCoder.1d54e045
K7GWTrojan ( 0056429b1 )
Cybereasonmalicious.981495
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Filecoder.YN
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan.MSIL.DelShad.gen
BitDefenderGeneric.Ransom.Small.12C0E3B1
MicroWorld-eScanGeneric.Ransom.Small.12C0E3B1
AvastWin32:Malware-gen
RisingRansom.Filecoder!8.55A8 (CLOUD)
Ad-AwareGeneric.Ransom.Small.12C0E3B1
DrWebTrojan.MulDrop11.56203
TrendMicroRansom.MSIL.DEATHHIDDENTEAR.SMVJRA
McAfee-GW-EditionGenericRXMF-AX!931823298149
FireEyeGeneric.mg.93182329814953d3
EmsisoftGeneric.Ransom.Small.12C0E3B1 (B)
IkarusTrojan-Ransom.FileCrypter
GDataGeneric.Ransom.Small.12C0E3B1
WebrootW32.Adware.Gen
AviraHEUR/AGEN.1217413
Antiy-AVLTrojan/Generic.ASMalwS.67F5
ArcabitGeneric.Ransom.Small.12C0E3B1
MicrosoftRansom:Win32/FileCoder.C!MTB
AhnLab-V3Malware/Win32.RL_Ransom.C4057278
Acronissuspicious
ALYacTrojan.Ransom.Filecoder
MAXmalware (ai score=80)
CylanceUnsafe
TrendMicro-HouseCallRansom.MSIL.DEATHHIDDENTEAR.SMVJRA
TencentMsil.Trojan.Delshad.Hqbg
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Filecoder.YN!tr.ransom
BitDefenderThetaGen:NN.ZemsilF.34582.bm0@a4LUfec
AVGWin32:Malware-gen
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Generic.Ransom.Small.12C0E3B1?

Generic.Ransom.Small.12C0E3B1 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment