Ransom

About “Ransom:Win32/Crenag.ARG!MTB” infection

Malware Removal

The Ransom:Win32/Crenag.ARG!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:Win32/Crenag.ARG!MTB virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Ransom:Win32/Crenag.ARG!MTB?


File Info:

crc32: 9E674DBF
md5: 54274d0cf5e17cc4277c6e9a1b1b2812
name: 54274D0CF5E17CC4277C6E9A1B1B2812.mlw
sha1: 1faac4a8afee9d77daa5a9ea24aa7469a8e31393
sha256: bd369f12f39f84e932480ab132d2a01f941d672332ccbbaac089275e30c50644
sha512: 0ac8011c3bd6d14864df04a86d4989531b883451ee0296215517a2d9e42b6f562eb3762ca93ba3664842bbdb46b0ffa250297f5048a13ea14bc74ca75364fc99
ssdeep: 6144:2F7DzPAVJwuxClsHtVRvAOjWnho9Ae01ho9Ae0dn:2pPAVa8nRv9MW9zwW9zon
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ransom:Win32/Crenag.ARG!MTB also known as:

BkavW32.AIDetect.malware2
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacGen:Variant.Ransom.696
CylanceUnsafe
ZillyaTrojan.GenericKD.Win32.122577
SangforRansom.Win32.Gen.jzm
AlibabaRansom:Win32/Crenag.5d53c941
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.cf5e17
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.BJCYKGU
APEXMalicious
AvastFileRepMalware
KasperskyTrojan-Ransom.Win32.Gen.jzm
BitDefenderGen:Variant.Ransom.696
NANO-AntivirusTrojan.Win32.Genasom.fevetr
MicroWorld-eScanGen:Variant.Ransom.696
TencentWin32.Trojan.Gen.Stal
Ad-AwareGen:Variant.Ransom.696
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34758.sCW@aOe7s2fi
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
FireEyeGeneric.mg.54274d0cf5e17cc4
EmsisoftGen:Variant.Ransom.696 (B)
JiangminTrojanDownloader.Upatre.agpa
AviraTR/Genasom.otike
eGambitUnsafe.AI_Score_99%
MicrosoftRansom:Win32/Crenag.ARG!MTB
ArcabitTrojan.Ransom.696
AegisLabTrojan.Win32.Generic.4!c
GDataGen:Variant.Ransom.696
AhnLab-V3Malware/Win32.Generic.C4074463
McAfeeArtemis!54274D0CF5E1
VBA32BScope.TrojanRansom.Gen
MalwarebytesMachineLearning/Anomalous.97%
PandaTrj/GdSda.A
RisingTrojan.Generic@ML.85 (RDMK:G00d5aovyLzYTqrCxRlg3g)
YandexTrojan.GenAsa!TtGnR9WGe+w
IkarusTrojan.Win32.Crenag
MaxSecureTrojan.Malware.94722159.susgen
FortinetW32/Gen.JZM!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Ransom:Win32/Crenag.ARG!MTB?

Ransom:Win32/Crenag.ARG!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment