Ransom

Ransom:Win32/Crypmod.B!bit malicious file

Malware Removal

The Ransom:Win32/Crypmod.B!bit is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:Win32/Crypmod.B!bit virus can do?

  • The executable is compressed using UPX
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Ransom:Win32/Crypmod.B!bit?


File Info:

crc32: 94CED377
md5: 2d0dbb1d84eebc245e4ffe0addff0caa
name: 2D0DBB1D84EEBC245E4FFE0ADDFF0CAA.mlw
sha1: 1c875561e11f83cfee9d125edc45f1a8695e210e
sha256: 2ad7bde8b72c1a5da4fd4496b28f59a46390681cb40d862821ab21650bf03a68
sha512: 78f1186031c122a96db0de2e89fb228d9dd8b317988ffaf2340bf104ba32efbc5d6ce63388c2654fc49a872a758698296e9ddeae1d97e822e3447c57ce31552d
ssdeep: 3072:TrJkiC0t0SlTcnZvV0ixbTmHqBNIgKIf7jiG/GtkNXnuQvsn5PqWR:T6PSGvSi9ScSgKGiGu0vs
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Ransom:Win32/Crypmod.B!bit also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Siggen8.15008
MicroWorld-eScanTrojan.GenericKD.34574563
McAfeeArtemis!2D0DBB1D84EE
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Malicious.4!c
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 004bcce41 )
BitDefenderTrojan.GenericKD.34574563
K7GWTrojan ( 004bcce41 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
APEXMalicious
AlibabaRansom:Win32/Crypmod.7dcaaa63
RisingRansom.Crypmod!1.B654 (CLOUD)
Ad-AwareTrojan.GenericKD.34574563
TACHYONTrojan/W32.Crysis.350208
EmsisoftTrojan.GenericKD.34574563 (B)
McAfee-GW-EditionBehavesLike.Win32.Generic.ft
FireEyeGeneric.mg.2d0dbb1d84eebc24
SophosMal/Generic-S + Mal/Dampatch-A
IkarusTrojan-Ransom.Crysis
WebrootW32.Trojan.TR.Crypt.XPACK
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.Generic
MicrosoftRansom:Win32/Crypmod.B!bit
ArcabitTrojan.Generic.D20F90E3
GDataTrojan.GenericKD.34574563
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Crysis.R351481
ALYacTrojan.Ransom.Crysis
MAXmalware (ai score=83)
MalwarebytesMalware.Heuristic.1003
PandaGeneric Suspicious
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Encoder.2438!tr
Cybereasonmalicious.d84eeb
Paloaltogeneric.ml

How to remove Ransom:Win32/Crypmod.B!bit?

Ransom:Win32/Crypmod.B!bit removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment