Ransom

About “Generic.Ransom.Small.9BF895FE” infection

Malware Removal

The Generic.Ransom.Small.9BF895FE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Small.9BF895FE virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.Small.9BF895FE?


File Info:

crc32: 14AD58BC
md5: 6bf7ad6fb2adfc0aea9adfe0649313ab
name: 6BF7AD6FB2ADFC0AEA9ADFE0649313AB.mlw
sha1: d80da4622aeb437207f2934547edb364070cef97
sha256: 2464bdbabec01dc6ba0ce59bbf5a0b6519a9b285e075d7d64c8f97b852324f71
sha512: ffcc5c3da9cf1071040cfbe85b844e3dc88615f1412a069f327e592b2ab6dbe9b11d62a0278b3b6b44f0068a9ad3bad7218c58192ae23a480f92090dfabe308d
ssdeep: 384:k3Mg/bqo27+0IpSOjuwzUPJ+r91CuWAea:aqo2kpfjKh+r9V1ea
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: 123.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: 123.exe

Generic.Ransom.Small.9BF895FE also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Encoder.10598
ClamAVWin.Ransomware.Hydracrypt-9878672-0
ALYacGeneric.Ransom.Small.9BF895FE
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
CyrenW32/Azorult.D.gen!Eldorado
SymantecRansom.HiddenTear!g1
ESET-NOD32a variant of MSIL/Filecoder.AGP
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Ransom.MSIL.Agent.gen
BitDefenderGeneric.Ransom.Small.9BF895FE
MicroWorld-eScanGeneric.Ransom.Small.9BF895FE
Ad-AwareGeneric.Ransom.Small.9BF895FE
SophosML/PE-A
F-SecureHeuristic.HEUR/AGEN.1138919
BitDefenderThetaGen:NN.ZemsilF.34110.bm0@aaj0cxe
McAfee-GW-EditionBehavesLike.Win32.Trojan.mm
FireEyeGeneric.mg.6bf7ad6fb2adfc0a
EmsisoftGeneric.Ransom.Small.9BF895FE (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1138919
eGambitUnsafe.AI_Score_98%
MicrosoftRansom:MSIL/Small.C!MTB
ArcabitGeneric.Ransom.Small.9BF895FE
SUPERAntiSpywareTrojan.Agent/Gen-Injector
ZoneAlarmHEUR:Trojan-Ransom.MSIL.Agent.gen
GDataMSIL.Trojan-Ransom.Remind.B
AhnLab-V3Ransomware/Win.FTD.C4580181
McAfeeRansomware-FTD!6BF7AD6FB2AD
MAXmalware (ai score=85)
MalwarebytesBackdoor.Agent.PGen
RisingRansom.Destructor!1.B060 (CLASSIC)
IkarusTrojan-Ransom.FileCrypter
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Filecoder.AGP!tr.ransom
AVGWin32:RansomX-gen [Ransom]

How to remove Generic.Ransom.Small.9BF895FE?

Generic.Ransom.Small.9BF895FE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment