The Ransom:Win32/HelloCrypt!MSR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.
What Ransom:Win32/HelloCrypt!MSR virus can do?
File Info:
name: 8D592CB83E801891E48D.mlwpath: /opt/CAPEv2/storage/binaries/ebd310cb5f63b364c4ce3ca24db5d654132b87728babae4dc3fb675266148fe9crc32: 8AA4BB3Dmd5: 8d592cb83e801891e48dcd7886349e25sha1: 7a1b6d3ccf9429a5a5c03ce1e6db91c3095e9f34sha256: ebd310cb5f63b364c4ce3ca24db5d654132b87728babae4dc3fb675266148fe9sha512: 57ddbe3f76212505363830d64ea0b4cb3f6edbaa559ee86e0b1ac57f215346ad6c7d02b524d1eb73f5b221e4737d29d04e6cb8f1c5613bef38ca5681e43f8b06ssdeep: 6144:ntbkYgimOlpNg0x+6wSEc0xLUgMX2abHWpc/b5Gx7ThpWoZDGJgWX5Y7wW/8hgFq:htNmOg0Y6/gM+c/1g74W/OgFqtype: PE32+ executable (GUI) x86-64, for MS Windowstlsh: T191742A5B928124FDE516A13D52469203BB31FCA04751F9F723A1F6313EB6AE4AD3DB20sha3_384: d5fec6913a3db68d09914ea2796b97a2e9d02245a8fea21bdc87c9b62b654f5ab1cf25b597f34e8c8f5bbd387162b32dep_bytes: 4883ec28488b050d8f0300c700010000timestamp: 2021-11-25 12:34:35Version Info:
CompanyName: MicloZ0ftFileDescription: VhlamAVFileVersion: 4.0InternalName: xdLegalCopyright: uKn0wOriginalFilename: xd.exeProductName: HelloXDProductVersion: 4.0Translation: 0x0409 0x04e4
Lionic | Trojan.Win32.Goppel.4!c |
Elastic | Windows.Ransomware.Helloxd |
MicroWorld-eScan | Gen:Variant.Tedy.74818 |
FireEye | Gen:Variant.Tedy.74818 |
McAfee | RDN/Ransom |
Malwarebytes | Ransom.HelloXD |
Zillya | Trojan.Filecoder.Win64.9692 |
Sangfor | Trojan.Win64.Hello.C |
CrowdStrike | win/malicious_confidence_100% (W) |
Alibaba | Trojan:Win32/Goppel.31024eec |
K7GW | Riskware ( 0040eff71 ) |
K7AntiVirus | Riskware ( 0040eff71 ) |
Cyren | W64/Ransom.QE.gen!Eldorado |
Symantec | Downloader |
ESET-NOD32 | a variant of Win64/Filecoder.Hello.C |
APEX | Malicious |
Paloalto | generic.ml |
Kaspersky | Trojan.Win32.Goppel.k |
BitDefender | Gen:Variant.Tedy.74818 |
Cynet | Malicious (score: 100) |
Avast | Win64:Trojan-gen |
Tencent | Win32.Trojan.Goppel.Eckn |
Ad-Aware | Gen:Variant.Tedy.74818 |
Sophos | Troj/HelloXD-A |
Comodo | Malware@#3qclgfqnzkpnd |
DrWeb | Trojan.Encoder.34840 |
VIPRE | Gen:Variant.Tedy.74818 |
TrendMicro | Ransom.Win64.HELLOCRYPT.THFACBB |
McAfee-GW-Edition | BehavesLike.Win64.Injector.fh |
Trapmine | malicious.moderate.ml.score |
Emsisoft | Gen:Variant.Tedy.74818 (B) |
GData | Win64.Trojan-Ransom.HelloXD.A |
Jiangmin | Trojan.Goppel.c |
Webroot | W32.Ransom.Helloxd |
Avira | TR/Redcap.wculm |
Antiy-AVL | Trojan/Generic.ASMalwS.4F80 |
Arcabit | Trojan.Tedy.D12442 |
Microsoft | Ransom:Win32/HelloCrypt!MSR |
Detected | |
AhnLab-V3 | Trojan/Win.Generic.C5169976 |
ALYac | Trojan.Ransom.Filecoder |
MAX | malware (ai score=86) |
VBA32 | Trojan.Goppel |
Cylance | Unsafe |
TrendMicro-HouseCall | Ransom.Win64.HELLOCRYPT.THFACBB |
Rising | Ransom.Hello!8.15E0D (CLOUD) |
Ikarus | Trojan-Ransom.HelloXD |
MaxSecure | Trojan.Malware.138926913.susgen |
Fortinet | W32/Filecoder_Hello.C!tr |
AVG | Win64:Trojan-gen |
Cybereason | malicious.ccf942 |
Panda | Trj/CI.A |
The Adware.LIImpact.1 is considered dangerous by lots of security experts. When this infection is active,…
The TrojanDownloader:Win32/Zlob.JN is considered dangerous by lots of security experts. When this infection is active,…
The Malware.AI.2023067230 is considered dangerous by lots of security experts. When this infection is active,…
The Malware.AI.3523790349 is considered dangerous by lots of security experts. When this infection is active,…
The Win32/Adware.Kraddare.MI is considered dangerous by lots of security experts. When this infection is active,…
The Worm.Win32.Vobfus.exgr is considered dangerous by lots of security experts. When this infection is active,…