Ransom

Generic.Ransom.Unlock92.CC4F3757 (file analysis)

Malware Removal

The Generic.Ransom.Unlock92.CC4F3757 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Unlock92.CC4F3757 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Generic.Ransom.Unlock92.CC4F3757?


File Info:

crc32: DFCDBBDA
md5: a4f08905c96de7c5e00bfaec59b5aa64
name: A4F08905C96DE7C5E00BFAEC59B5AA64.mlw
sha1: 85fbf8d8fcb0652ca821f5f7cf7f9c4f4e0250ad
sha256: 5fd99269b142ce5bae1e6aca4723932612824ec61d33a700ab1afe27790e83ab
sha512: 83891f8bdb7a43f028d2d486e675e220294973dab3cd0c6d598e8686ac97fdf5dc316ea953089e44de777d2d9afea8bfa7525d6a9122b0167c03e1843ff4ab56
ssdeep: 768:wk2gvnTO5fKbF9ImH2IgcLs2IgMP2Ig8BJYcV6lw9b:wkLv65fIF9THScLsSMPS8Bj6lw9
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2016
Assembly Version: 1.0.0.0
InternalName: KSATAT.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: KSATAT
ProductVersion: 1.0.0.0
FileDescription: KSATAT
OriginalFilename: KSATAT.exe

Generic.Ransom.Unlock92.CC4F3757 also known as:

K7AntiVirusTrojan ( 004d3df31 )
LionicTrojan.Win32.Scatter.j!c
DrWebTrojan.Encoder.7090
CynetMalicious (score: 99)
ALYacGeneric.Ransom.Unlock92.CC4F3757
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.3698
AlibabaRansom:MSIL/Filecoder.c20b7da3
K7GWTrojan ( 004d3df31 )
Cybereasonmalicious.5c96de
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Filecoder.AC
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan-Ransom.MSIL.Gen.gen
BitDefenderGeneric.Ransom.Unlock92.CC4F3757
NANO-AntivirusTrojan.Win32.Scatter.eilvxs
MicroWorld-eScanGeneric.Ransom.Unlock92.CC4F3757
TencentMsil.Trojan.Gen.Lorg
Ad-AwareGeneric.Ransom.Unlock92.CC4F3757
SophosMal/Generic-S + Mal/CrypZxas-A
BitDefenderThetaGen:NN.ZemsilF.34170.fm0@ayCWPno
McAfee-GW-EditionGeneric.asm
FireEyeGeneric.mg.a4f08905c96de7c5
EmsisoftGeneric.Ransom.Unlock92.CC4F3757 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Scatter.bg
AviraTR/Crypt.XPACK.Gen7
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Dynamer!rfn
ArcabitGeneric.Ransom.Unlock92.CC4F3757
ZoneAlarmHEUR:Trojan-Ransom.MSIL.Gen.gen
GDataGeneric.Ransom.Unlock92.CC4F3757
AhnLab-V3Trojan/Win32.RL_Geograph.C3504636
McAfeeGeneric.asm
MAXmalware (ai score=100)
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/GdSda.A
YandexTrojan.Filecoder!Z83afyZ9n3I
IkarusTrojan-Ransom.FileCrypter
FortinetMSIL/Filecoder.AC!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Generic.Ransom.Unlock92.CC4F3757?

Generic.Ransom.Unlock92.CC4F3757 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment