Ransom Trojan

Should I remove “GenPack:Trojan.Ransom.Petya.C (B)”?

Malware Removal

The GenPack:Trojan.Ransom.Petya.C (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What GenPack:Trojan.Ransom.Petya.C (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Likely installs a bootkit via raw harddisk modifications
  • Attempts to restart the guest VM
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz

How to determine GenPack:Trojan.Ransom.Petya.C (B)?


File Info:

crc32: 5B6C810F
md5: 12a34ccbdf60fa2e6866baa806f99d42
name: 12A34CCBDF60FA2E6866BAA806F99D42.mlw
sha1: 2a4826db52ac1604b83a70d052350577b9b9f7c5
sha256: d40604c29a81e9996fc1d4fe752aa7fd44832716ffc6259f8647815e14a4e74c
sha512: 4a11ce29c674dc186a801178ba85d705bff18a9e032c2964b4417e29bb02fa8b679cc9e0599d0b8ae7897ba47708b14ae8489bfe9fa3cc7d0113bd9038e7ebaa
ssdeep: 1536:pk0efZp7lkhZIjUt3fTInlN5RnUc2DneUhu1B8STwYrFEN42qM7EtSO/EheDAdu:eBpljm3fTIn5ZoLeUq8EwQa3EZEhSAI
type: MS-DOS executable, MZ for MS-DOS

Version Info:

0: [No Data]

GenPack:Trojan.Ransom.Petya.C (B) also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 004e19001 )
DrWebTrojan.Ransom.369
CynetMalicious (score: 100)
ALYacGenPack:Trojan.Ransom.Petya.C
CylanceUnsafe
ZillyaTrojan.Diskcoder.Win32.58
SangforSuspicious.Win32.Save.a
AlibabaRansom:Win32/Petya.c1fdb3b6
K7GWTrojan ( 004e19001 )
Cybereasonmalicious.bdf60f
SymantecTrojan.Gen
ESET-NOD32Win32/Diskcoder.Petya.A
APEXMalicious
AvastFileRepMalware
ClamAVWin.Trojan.Petya-5637914-0
KasperskyUDS:Trojan-Ransom.Win32.Petr.gen
BitDefenderGenPack:Trojan.Ransom.Petya.C
NANO-AntivirusTrojan.Win32.MBRlock.eqjcgd
MicroWorld-eScanGenPack:Trojan.Ransom.Petya.C
TencentMalware.Win32.Gencirc.1149892f
Ad-AwareGenPack:Trojan.Ransom.Petya.C
SophosMal/Generic-S
ComodoMalware@#7cazfbvnrsj
BitDefenderThetaGen:NN.ZexaF.34142.gmqaaSxwtvai
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_PETYA.SM3
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.cc
FireEyeGeneric.mg.12a34ccbdf60fa2e
EmsisoftGenPack:Trojan.Ransom.Petya.C (B)
JiangminTrojanRansom.Petya.a
WebrootW32.Trojan.Ransom.Petya
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.20ED6A9
KingsoftWin32.Heur.KVMH008.a.(kcloud)
MicrosoftRansom:Win32/Petya.A
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGenPack:Trojan.Ransom.Petya.C
AhnLab-V3Trojan/Win32.RL_Petr.R285841
McAfeeRansom-Petya
MAXmalware (ai score=100)
VBA32Trojan.Ransom
PandaTrj/CI.A
TrendMicro-HouseCallRansom_PETYA.SM3
RisingRansom.Petr!1.B334 (CLASSIC)
YandexTrojan.GenAsa!xQ2AdsINpVs
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Petya.MP!tr.ransom
AVGFileRepMalware
Paloaltogeneric.ml

How to remove GenPack:Trojan.Ransom.Petya.C (B)?

GenPack:Trojan.Ransom.Petya.C (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment