Ransom

Ransom:Win32/Genasom.CN removal instruction

Malware Removal

The Ransom:Win32/Genasom.CN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:Win32/Genasom.CN virus can do?

  • The binary likely contains encrypted or compressed data.
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Ransom:Win32/Genasom.CN?


File Info:

crc32: 320F0137
md5: b064f31ad5b39891811bed978cb1e2d0
name: fast.exe
sha1: 40f53bc09c9dff6d31389e59e36bd64617936290
sha256: 0e3563fef62e1f1e209015054f0a41dcd244adc31f98e951c6c379dc539d4a85
sha512: 3b20d713691b5a17dbd5eebea53889ebd8f3830e9ab1b10b2c5e3be6454fe51c4edb97e6c4856aafb4f9a2311a7abc816903e51dfb3612e236b35ee53cd31921
ssdeep: 24576:OaHMv6CwrjDny0Qiht5w4HhkPmT8dd6WIioDh+PzMlAp:O1vaju0Qit6IkI87IHi
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ransom:Win32/Genasom.CN also known as:

DrWebTrojan.Packed.20771
MicroWorld-eScanDropped:Trojan.GenericKD.32076507
Qihoo-360Win32/Trojan.Ransom.6a5
McAfeeGenericRXDR-OQ!B064F31AD5B3
CylanceUnsafe
AegisLabTrojan.Win32.Delf.toJT
SangforMalware
K7AntiVirusTrojan ( 004bdc281 )
BitDefenderDropped:Trojan.GenericKD.32076507
K7GWTrojan ( 004bdc281 )
Cybereasonmalicious.ad5b39
Invinceaheuristic
BitDefenderThetaAI:Packer.B8E7EA9E1F
F-ProtW32/Trojan2.PZJI
SymantecSMG.Heur!gen
TotalDefenseWin32/Fynloski.ZHLKEDD
APEXMalicious
AvastWin32:Delf-TTR [Trj]
GDataDropped:Trojan.GenericKD.32076507
KasperskyTrojan-Ransom.Win32.Blocker.hnwj
AlibabaRansom:Win32/Blocker.d1604ce9
NANO-AntivirusTrojan.Win32.Delf.flagce
ViRobotTrojan.Win32.A.Scar.451584.A
TencentMalware.Win32.Gencirc.10b0cf09
Ad-AwareDropped:Trojan.GenericKD.32076507
EmsisoftDropped:Trojan.GenericKD.32076507 (B)
ComodoTrojWare.Win32.TrojanDropper.Delf.SOC@572vwy
F-SecureTrojan.TR/ATRAPS.Gen
BaiduWin32.Trojan-Dropper.Delf.as
ZillyaTrojan.Fignotok.Win32.341
TrendMicroTROJ_BINDER.SMBD
McAfee-GW-EditionBehavesLike.Win32.Dropper.th
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.b064f31ad5b39891
SophosMal/Generic-S
IkarusWorm.Win32.Agent
CyrenW32/Trojan.VVWT-8174
JiangminTrojan/Genome.bawa
WebrootW32.Trojan.Gen
AviraTR/ATRAPS.Gen
MAXmalware (ai score=80)
Antiy-AVLTrojan[Dropper]/Win32.Delf.efnz
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D1E972DB
ZoneAlarmTrojan-Ransom.Win32.Blocker.hnwj
MicrosoftRansom:Win32/Genasom.CN
AhnLab-V3Trojan/Win32.Ruftar.R30190
Acronissuspicious
ALYacDropped:Trojan.GenericKD.32076507
VBA32TrojanDropper.Delf
MalwarebytesTrojan.Agent.DF
PandaTrj/Genetic.gen
ESET-NOD32Win32/TrojanDropper.Delf.OEF
TrendMicro-HouseCallTROJ_BINDER.SMBD
RisingRansom.Weenloc!8.519 (CLOUD)
YandexTrojan.Scar!uBmAXcrBjn4
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/DROPPER.PAG!tr
AVGWin32:Delf-TTR [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
MaxSecureDropper.Delf.EFNZ

How to remove Ransom:Win32/Genasom.CN?

Ransom:Win32/Genasom.CN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment