Malware

What is “TeslaCrypt.22”?

Malware Removal

The TeslaCrypt.22 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TeslaCrypt.22 virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz

How to determine TeslaCrypt.22?


File Info:

crc32: 250CEA42
md5: 951f48d678cf10c921f28bd0288addd2
name: 951F48D678CF10C921F28BD0288ADDD2.mlw
sha1: 3fae85eeb74297fc914c7422571688953cb2ff3b
sha256: 49e79fa2418b6e98954d0e71f7cab45c676bc7c6f5a033ade7b1bf86746f35fd
sha512: a7b0c9fdbff690f24fefc764b574c687acbac52da2fd0606f18dc7036d552a2cede20f2cc6655e11eac9b6d2acf3d70ea5053d59389eca7044e368bfb429854c
ssdeep: 1536:qWP5Ev92wMHQfHZQ4mUgZlCagxctvRwkU8rZa:qWPi2yf8UQlC/kvRwkUma
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 Microsoft Corporation 1992-2001
InternalName: HTAStart.exe
FileVersion: 9.00.2412
CompanyName: Microsoft Corporation
ProductName: Microsoftxae Visual Studio.NET
ProductVersion: 9.00.2412
FileDescription: HTAStart
OriginalFilename: HTAStart.exe
Translation: 0x0409 0x04b0

TeslaCrypt.22 also known as:

LionicTrojan.Win32.TeslaCrypt.4!c
DrWebWin32.Polipos
ALYacGen:Variant.TeslaCrypt.22
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaTrojan:Win32/Tesla.e6f3312f
Cybereasonmalicious.678cf1
SymantecML.Attribute.HighConfidence
ZonerProbably Heur.ExeHeaderH
APEXMalicious
AvastWin32:Polipos [Inf]
CynetMalicious (score: 99)
BitDefenderGen:Variant.TeslaCrypt.22
MicroWorld-eScanGen:Variant.TeslaCrypt.22
TencentWin32.Trojan.Tesla.Hqvf
Ad-AwareGen:Variant.TeslaCrypt.22
SophosMal/Generic-S
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Virut.cz
FireEyeGeneric.mg.951f48d678cf10c9
EmsisoftGen:Variant.TeslaCrypt.22 (B)
AviraTR/Tesla.yqazj
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Occamy.C
GDataGen:Variant.TeslaCrypt.22
AhnLab-V3Malware/Win32.Generic.C3153271
McAfeeArtemis!951F48D678CF
MAXmalware (ai score=100)
PandaTrj/CI.A
IkarusTrojan.Tesla
MaxSecureTrojan.Malware.74219670.susgen
FortinetW32/PossibleThreat
AVGWin32:Polipos [Inf]
Paloaltogeneric.ml

How to remove TeslaCrypt.22?

TeslaCrypt.22 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment