Ransom

About “Generic.Ransom.Sodinokibi.FE9FF902 (B)” infection

Malware Removal

The Generic.Ransom.Sodinokibi.FE9FF902 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Sodinokibi.FE9FF902 (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • A process created a hidden window
  • A scripting utility was executed
  • Attempts to stop active services
  • Installs itself for autorun at Windows startup
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.Sodinokibi.FE9FF902 (B)?


File Info:

crc32: F24099F6
md5: e9fc1bb19a3765d82f778e88f82593c1
name: tmp55rk976g
sha1: 792e99fd481616525c1b6f3f9835e8e24c0f4684
sha256: 07346bb5f71e3c67a9ffd1b0d9602452f044b9262b468b6ed055f6548f26327a
sha512: 5730d2e249e03f415096df4d1291aae3f62320c11614d5bd9c3db28ec5291e3fc392d7cc5a2bea0f89f4af8c3922a30cb38e42cb27b8516c786276757a4046fa
ssdeep: 1536:ck8UL5PbQCu5Nn/HDM5Oo0mjSpUCBMdqICS4AeNf1Wcr/1OOIZSHrjW4qDPjxPh:eVvpXmjmYdJ4Z1gYrBqDrhhsb
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.Sodinokibi.FE9FF902 (B) also known as:

MicroWorld-eScanDeepScan:Generic.Ransom.Sodinokibi.FE9FF902
FireEyeGeneric.mg.e9fc1bb19a3765d8
McAfeeRansom-Sodnkibi!E9FC1BB19A37
CylanceUnsafe
AegisLabTrojan.Win32.Gen.j!c
K7AntiVirusTrojan ( 0054d99c1 )
BitDefenderDeepScan:Generic.Ransom.Sodinokibi.FE9FF902
K7GWTrojan ( 0054d99c1 )
Cybereasonmalicious.19a376
TrendMicroRansom.Win32.SODINOKIB.SMTH
BitDefenderThetaAI:Packer.59A870CF1E
CyrenW32/Kryptik.AKW.gen!Eldorado
SymantecRansom.Sodinokibi
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Ransomware.Sodinokibi-7013612-0
GDataDeepScan:Generic.Ransom.Sodinokibi.FE9FF902
KasperskyHEUR:Trojan-Ransom.Win32.Gen.gen
AlibabaRansom:Win32/generic.ali2000010
NANO-AntivirusVirus.Win32.Gen.ccmw
ViRobotTrojan.Win32.Z.Sodinokibi.118272.BS
RisingRansom.Sodin!8.10CD8 (CLOUD)
Ad-AwareDeepScan:Generic.Ransom.Sodinokibi.FE9FF902
SophosMal/Generic-S
ComodoMalware@#2d8sggs686rfg
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.Encoder.28004
ZillyaTrojan.Filecoder.Win32.14505
Invinceaheuristic
Trapminesuspicious.low.ml.score
EmsisoftDeepScan:Generic.Ransom.Sodinokibi.FE9FF902 (B)
IkarusTrojan-Ransom.Sodinokibi
F-ProtW32/Kryptik.AKW.gen!Eldorado
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=82)
Antiy-AVLTrojan[Ransom]/Win32.Gen
Endgamemalicious (high confidence)
ArcabitDeepScan:Generic.Ransom.Sodinokibi.FE9FF902
ZoneAlarmHEUR:Trojan-Ransom.Win32.Gen.gen
MicrosoftRansom:Win32/Sodinokibi.DSB!MTB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.RL_Ransom.R290570
Acronissuspicious
ALYacTrojan.Ransom.Sodinokibi
VBA32BScope.Trojan.DelShad
MalwarebytesRansom.Sodinokibi
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Filecoder.Sodinokibi.B
TrendMicro-HouseCallRansom.Win32.SODINOKIB.SMTH
TencentMalware.Win32.Gencirc.10cdd51f
YandexTrojan.Filecoder!D4ko3vclm2c
SentinelOneDFI – Malicious PE
FortinetW32/Sodinokibi.B!tr.ransom
AVGWin32:Malware-gen
AvastWin32:Malware-gen
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360HEUR/QVM20.1.269C.Malware.Gen

How to remove Generic.Ransom.Sodinokibi.FE9FF902 (B)?

Generic.Ransom.Sodinokibi.FE9FF902 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment