Ransom

How to remove “Generic.Ransom.VxLock.47C5D98F”?

Malware Removal

The Generic.Ransom.VxLock.47C5D98F is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.VxLock.47C5D98F virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Detects Sandboxie through the presence of a library
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Generic.Ransom.VxLock.47C5D98F?


File Info:

crc32: 7AE3CA4A
md5: fb6ff71e2d93f5b6a66774ba0be046ca
name: FB6FF71E2D93F5B6A66774BA0BE046CA.mlw
sha1: 620d25f7c8e57757fa9dff88b3f8421b34a2b9d3
sha256: 64797c47df73ccfb7798884f21d7bbf554c62ecc687b399816d3f161d0b713cd
sha512: 539f6ea91eb4416980ebac84848ebf61804d094bff8ffb16a84018da08f2b1b7e8d83f56c81871ba38245b7594acd6178096d5f149e964b34b575b4a5633a1ef
ssdeep: 384:MyWAb08Z6MMgIMO0kgxwmQWvaSQ4W3iqstZDs0Nc827FsU:IjMOkemQWySKSRc827
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: vxLock.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: vxLock.exe

Generic.Ransom.VxLock.47C5D98F also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacTrojan.Ransom.VxLock
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.4223
SangforRiskware.Win32.Agent.ky
Cybereasonmalicious.e2d93f
SymantecML.Attribute.HighConfidence
ESET-NOD32MSIL/Filecoder.EL
APEXMalicious
AvastWin32:Malware-gen
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGeneric.Ransom.VxLock.47C5D98F
NANO-AntivirusTrojan.Win32.Filecoder.ektwsn
MicroWorld-eScanGeneric.Ransom.VxLock.47C5D98F
TencentWin32.Trojan.Generic.Eerf
Ad-AwareGeneric.Ransom.VxLock.47C5D98F
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34690.bm0@aqfVkAb
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_VXLOCK.A
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.fb6ff71e2d93f5b6
EmsisoftGeneric.Ransom.VxLock.47C5D98F (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Ransom.Gen
AviraTR/FileCoder.dvcwo
eGambitUnsafe.AI_Score_89%
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftRansom:Win32/FileCryptor
AegisLabTrojan.Win32.Generic.4!c
GDataGeneric.Ransom.VxLock.47C5D98F
McAfeeArtemis!FB6FF71E2D93
MAXmalware (ai score=100)
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_VXLOCK.A
RisingRansom.FileCryptor!8.1A7 (CLOUD)
YandexTrojan.Filecoder!5Vqb22v8l2o
IkarusTrojan-Ransom.VxLock
FortinetMSIL/Generic.AP.6360A!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Generic.Ransom.VxLock.47C5D98F?

Generic.Ransom.VxLock.47C5D98F removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment