Trojan

Should I remove “GenPack:Trojan.TeslaCrypt.V”?

Malware Removal

The GenPack:Trojan.TeslaCrypt.V is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What GenPack:Trojan.TeslaCrypt.V virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Attempts to identify installed AV products by registry key
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine GenPack:Trojan.TeslaCrypt.V?


File Info:

crc32: D5BD6207
md5: e79aeb278a5de1e4be7b6f289cf0082c
name: E79AEB278A5DE1E4BE7B6F289CF0082C.mlw
sha1: f75cd07d72908e84d4ca4bd0153bac119e6652b5
sha256: 69d22dd1c7475ad076547dba4355cdb9d0a818600faa1a3cd8fe70711dd715e8
sha512: 51984bd965b3910a18ef2fffa239dcdb65db47e746bac551dc2b5896a5faf78344dbadd89e9f8e2a96d4973e876fa89873a9f67dce0d793f28422aaa86b6ebcf
ssdeep: 6144:2HcoO/PCN5ifwVUbcRPVi8xdifSfyayhBP06nKuNU5Km7sNYuBSf5O/n0oI9q:28PCbrVEMGaiNnX+5bXuQo/ZI9
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

GenPack:Trojan.TeslaCrypt.V also known as:

K7AntiVirusTrojan ( 0055e3ef1 )
LionicTrojan.Win32.Shifu.4!c
DrWebTrojan.AVKill.59883
ALYacGenPack:Trojan.TeslaCrypt.V
CylanceUnsafe
ZillyaTrojan.TeslaCrypt.Win32.96
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaTrojan:Win32/Shifu.fabffa0e
K7GWTrojan ( 0055e3ef1 )
Cybereasonmalicious.78a5de
BaiduWin32.Trojan.Filecoder.k
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Filecoder.TeslaCrypt.I
APEXMalicious
AvastFileRepMalware
CynetMalicious (score: 99)
KasperskyTrojan.Win32.Shifu.e
BitDefenderGenPack:Trojan.TeslaCrypt.V
NANO-AntivirusTrojan.Win32.AVKill.eajclq
MicroWorld-eScanGenPack:Trojan.TeslaCrypt.V
TencentWin32.Trojan.Shifu.Alio
Ad-AwareGenPack:Trojan.TeslaCrypt.V
SophosMal/Generic-S
BitDefenderThetaAI:Packer.FFFB1FDE20
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_CRYPTESLA.SMJ5
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
FireEyeGeneric.mg.e79aeb278a5de1e4
EmsisoftGenPack:Trojan.TeslaCrypt.V (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Banker.Shifu.dm
AviraHEUR/AGEN.1107576
Antiy-AVLTrojan/Generic.ASMalwS.17212D3
MicrosoftRansom:Win32/Tescrypt!rfn
GDataGenPack:Trojan.TeslaCrypt.V
McAfeeArtemis!E79AEB278A5D
MAXmalware (ai score=83)
VBA32BScope.Trojan.AVKill
PandaTrj/RansomCrypt.H
TrendMicro-HouseCallRansom_CRYPTESLA.SMJ5
YandexTrojan.Shifu!RRFMANU5hzw
IkarusTrojan.Win32.Filecoder
FortinetW32/Kryptik.EOVH!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove GenPack:Trojan.TeslaCrypt.V?

GenPack:Trojan.TeslaCrypt.V removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment