Ransom

What is “Ransom.Unlckr”?

Malware Removal

The Ransom.Unlckr is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.Unlckr virus can do?

  • Anomalous binary characteristics

How to determine Ransom.Unlckr?


File Info:

crc32: 8C61D05B
md5: 145be6c6da68ff4174b58e7f4471fd94
name: 145BE6C6DA68FF4174B58E7F4471FD94.mlw
sha1: 622e432b1b0b946da602161b959974a1effdd06f
sha256: 8e335a4f3b4190b8839a871a808d020d55f71e704753abf7320073c9025b680f
sha512: e23ad205c4f2b5c0beee1cc79e8c1a167a770395489ba4fc705c99a28c0b1e48c7c26056240cbd7f459fba03aee8e6cdc456025c3fbbf636e5b15492d4113c31
ssdeep: 384:N6WVSxWbIEfYq/IC3yuaWh28FBEXfyze+njuYDfH:jVSYbvwPDub0zzYL
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2018
Assembly Version: 1.0.0.1
InternalName: Epatate.exe
FileVersion: 1.0.0.1
CompanyName:
LegalTrademarks:
Comments:
ProductName: Epatate
ProductVersion: 1.0.0.1
FileDescription: Epatate
OriginalFilename: Epatate.exe

Ransom.Unlckr also known as:

K7AntiVirusTrojan ( 004d3df31 )
DrWebTrojan.PWS.Steam.15626
CynetMalicious (score: 99)
ALYacGen:Variant.Bulz.3242
CylanceUnsafe
ZillyaTrojan.Generic.Win32.297423
CrowdStrikewin/malicious_confidence_70% (D)
AlibabaTrojan:MSIL/Filecoder.ef5e0aa7
K7GWTrojan ( 004d3df31 )
Cybereasonmalicious.6da68f
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Filecoder.AC
APEXMalicious
AvastWin32:Rootkit-gen [Rtk]
KasperskyHEUR:Trojan-Ransom.MSIL.Generic
BitDefenderGen:Variant.Bulz.3242
NANO-AntivirusTrojan.Win32.Ransom.eylatj
MicroWorld-eScanGen:Variant.Bulz.3242
TencentMsil.Trojan.Generic.Dwjr
Ad-AwareGen:Variant.Bulz.3242
SophosMal/Generic-S
ComodoMalware@#b5u05ge1q6ku
BitDefenderThetaGen:NN.ZemsilF.34678.bm0@aGUhnJj
VIPRETrojan.Win32.Generic!BT
FireEyeGeneric.mg.145be6c6da68ff41
EmsisoftGen:Variant.Bulz.3242 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.MSIL.ipzs
AviraHEUR/AGEN.1115170
MicrosoftRansom:Win32/Genasom
ArcabitTrojan.Bulz.DCAA
AegisLabTrojan.MSIL.Generic.4!c
GDataGen:Variant.Bulz.3242
AhnLab-V3Trojan/Win32.MSIL.C2432224
McAfeeGeneric.dpt
MAXmalware (ai score=98)
VBA32Trojan.Ransom.Genasom
MalwarebytesRansom.Unlckr
PandaTrj/CI.A
RisingRansom.FileCryptor!8.1A7 (CLOUD)
IkarusTrojan-Ransom.FileCrypter
FortinetMSIL/Filecoder.AC!tr
AVGWin32:Rootkit-gen [Rtk]
Paloaltogeneric.ml
Qihoo-360Win32/Rootkit.Generic.HwMAEpsA

How to remove Ransom.Unlckr?

Ransom.Unlckr removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment