Ransom

Should I remove “Ransom:Win32/Tescrypt.AC!MTB”?

Malware Removal

The Ransom:Win32/Tescrypt.AC!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:Win32/Tescrypt.AC!MTB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.

Related domains:

teletop.top

How to determine Ransom:Win32/Tescrypt.AC!MTB?


File Info:

crc32: 0687D067
md5: 65d2290d705e9ab5da1907a806f45790
name: 65D2290D705E9AB5DA1907A806F45790.mlw
sha1: 822aad5f4299e21099b90f8d6dc12d2ebdc57f45
sha256: ad7a43d349196fcd55f26cafda2ed1907288aff6200e0348718cdc94373d84b9
sha512: eaaa75b2fa04ac4f7fdd6e20aa429bd126c3a29fc9c630583bf8e5577c61169d75b18c3920355b95870be36fffa1086e62a41d90947c939c9b80734cb35a6ebe
ssdeep: 12288:yRETCTh7FPj0AF1C8DVkOuEzo4rMbDDrU1n1Pzxp6L:yxN7JJF1dVkOtdruw11r36L
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: sajbmianozu.iya
ProductVersion: 2.41.59.42
Copyright: Copyrighz (C) 2021, fudkagat
Translation: 0x0127 0x007a

Ransom:Win32/Tescrypt.AC!MTB also known as:

LionicTrojan.Win32.Malicious.4!c
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.27207
ALYacGen:Heur.Mint.Zard.52
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Tescrypt.a0969893
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
CyrenW32/Kryptik.EWJ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HMSO
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Zenpak.gen
BitDefenderGen:Heur.Mint.Zard.52
MicroWorld-eScanGen:Heur.Mint.Zard.52
TencentWin32.Trojan.Zenpak.Wqna
Ad-AwareGen:Heur.Mint.Zard.52
SophosMal/Generic-S
ComodoMalware@#10opo4yjusbjn
BitDefenderThetaGen:NN.ZexaF.34170.Hq0@aaQPgili
McAfee-GW-EditionBehavesLike.Win32.Ransomware.hc
FireEyeGeneric.mg.65d2290d705e9ab5
EmsisoftTrojan.Crypt (A)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.Tofsee.ewh
eGambitUnsafe.AI_Score_99%
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftRansom:Win32/Tescrypt.AC!MTB
GDataGen:Heur.Mint.Zard.52
AhnLab-V3Ransomware/Win.StopCrypt.R444038
Acronissuspicious
McAfeeRDN/RaccoonStealer
MAXmalware (ai score=81)
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_Tescrypt.R049C0DJ821
YandexTrojan.Zenpak!ov9IOppdllo
IkarusTrojan.Crypt
FortinetW32/Kryptik.HMSO!tr
AVGWin32:RansomX-gen [Ransom]
Paloaltogeneric.ml

How to remove Ransom:Win32/Tescrypt.AC!MTB?

Ransom:Win32/Tescrypt.AC!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment