Ransom

Generic.Ransom.Vortex.6C2079C7 removal guide

Malware Removal

The Generic.Ransom.Vortex.6C2079C7 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.Vortex.6C2079C7 virus can do?

  • Network activity detected but not expressed in API logs

How to determine Generic.Ransom.Vortex.6C2079C7?


File Info:

crc32: 8DE8A522
md5: c67415cd00fa61d8870b0a64094002c4
name: C67415CD00FA61D8870B0A64094002C4.mlw
sha1: d7d83a9460f255c02ce3360d1eb44574695ffef7
sha256: b6fe58fdf2c831e485f07d1e74cb882ff3636fa6c353ed33351e916131ff24c5
sha512: 2786d81d7340f4f58426388de51f379e5640e00302724eb5b62c42ec1be797993cae466f62db6b8ccd7f9c2142b32f65b0631964eeb41635ee963a1352ea37b4
ssdeep: 6144:J7D0J4DTrNcppA36GznOk4RhcI/Pj8I/PE:dD0IrNcppA36GznhwhcI83
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 9.3.11.0
InternalName: pg_ctl.exe
FileVersion: 9.3.11.16195
CompanyName:
LegalTrademarks:
Comments: pg_ctl - starts/stops/restarts the PostgreSQL server
ProductName: PostgreSQL
ProductVersion: 9.3.11.16195
FileDescription: PostgreSQL
OriginalFilename: pg_ctl.exe

Generic.Ransom.Vortex.6C2079C7 also known as:

K7AntiVirusTrojan ( 005082d71 )
LionicTrojan.MSIL.Crypren.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.12326
CynetMalicious (score: 99)
CAT-QuickHealTrojan.MsilFC.S17873344
ALYacTrojan.Ransom.Vortex
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.8168
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:MSIL/Filecoder.f375377e
K7GWTrojan ( 005082d71 )
Cybereasonmalicious.d00fa6
SymantecDownloader
ESET-NOD32a variant of MSIL/Filecoder.FF
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan-Ransom.MSIL.Crypren.gen
BitDefenderGeneric.Ransom.Vortex.6C2079C7
NANO-AntivirusTrojan.Win32.Encoder.fjiqze
MicroWorld-eScanGeneric.Ransom.Vortex.6C2079C7
TencentMsil.Trojan.Crypren.Syho
Ad-AwareGeneric.Ransom.Vortex.6C2079C7
SophosMal/Generic-R + Troj/Vortex-B
ComodoMalware@#ht0evqrw0vz6
BitDefenderThetaGen:NN.ZemsilF.34790.tm1@a8DrdJm
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXOZ-RE!C67415CD00FA
FireEyeGeneric.mg.c67415cd00fa61d8
EmsisoftGeneric.Ransom.Vortex.6C2079C7 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.MSIL.rixb
AviraHEUR/AGEN.1117961
Antiy-AVLTrojan/Generic.ASMalwS.20EB9ED
MicrosoftTrojan:Win32/AgentTesla!ml
GDataMSIL.Trojan-Ransom.Vortex.C
AhnLab-V3Trojan/RL.Agent.R243297
McAfeeGenericRXOZ-RE!C67415CD00FA
MAXmalware (ai score=100)
VBA32Trojan.MSIL.Agent
MalwarebytesMalware.AI.3950378252
PandaTrj/GdSda.A
YandexTrojan.Agent!dTmeGbrB7Bk
IkarusTrojan.MSIL.Filecoder
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Filecoder.FF!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Backdoor.VorteX.HwMAEpsA

How to remove Generic.Ransom.Vortex.6C2079C7?

Generic.Ransom.Vortex.6C2079C7 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment