Ransom

TeslaCrypt.Ransom.Encrypt.DDS (file analysis)

Malware Removal

The TeslaCrypt.Ransom.Encrypt.DDS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TeslaCrypt.Ransom.Encrypt.DDS virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine TeslaCrypt.Ransom.Encrypt.DDS?


File Info:

crc32: 421835B9
md5: 937fc86d2db2c812aff29e0315f25c48
name: 937FC86D2DB2C812AFF29E0315F25C48.mlw
sha1: 0a775197a17c1e89e079b53e28042b611d6b8746
sha256: 8a9c0c7e3a928fedc1904940c5dd9811cc37c31a99c2d14363cc38fd9e28eda8
sha512: b9bc0b1623edfdf09c1912d7f2f8d4397c34e31503277bdcd92b45557fa1fd067e708feab1f35d3cff17d7a9994c8bd8e2075d59d9b1a1854fa379472c541c2d
ssdeep: 12288:ASdMlBm+K7w537833beDdDaHTzT8rH1v1Rro:FAIwoLWdDaHTzT8rJc
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

0: [No Data]

TeslaCrypt.Ransom.Encrypt.DDS also known as:

K7AntiVirusTrojan ( 00569db81 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Siggen2.51193
CynetMalicious (score: 100)
ALYacSpyware.AgentTesla
CylanceUnsafe
ZillyaTrojan.Agensla.Win32.3317
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Maldoc.ali2000008
K7GWTrojan ( 00569db81 )
Cybereasonmalicious.d2db2c
CyrenW32/Trojan.IDLL-6899
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.TGSSKF
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan-PSW.MSIL.Agensla.gen
BitDefenderTrojan.GenericKD.34093416
NANO-AntivirusTrojan.Win32.Agensla.hnzrkw
MicroWorld-eScanTrojan.GenericKD.34093416
Ad-AwareTrojan.GenericKD.34093416
SophosMal/Generic-R + Troj/Hawkey-SY
ComodoMalware@#3d06vo2e5ipw1
F-SecureHeuristic.HEUR/AGEN.1116674
BitDefenderThetaGen:NN.ZemsilF.34738.GmW@auerGlgi
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PC821
McAfee-GW-EditionBehavesLike.Win32.Generic.hh
FireEyeGeneric.mg.937fc86d2db2c812
EmsisoftTrojan.GenericKD.34093416 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.PSW.MSIL.aixb
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1116674
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.30A9775
MicrosoftTrojan:Win32/Casdet!rfn
ArcabitTrojan.Generic.D2083968
AegisLabTrojan.MSIL.Agensla.i!c
ZoneAlarmHEUR:Trojan-PSW.MSIL.Agensla.gen
GDataTrojan.GenericKD.34093416
AhnLab-V3Trojan/Win32.Agensla.C4150592
McAfeeFareit-FVK!937FC86D2DB2
MAXmalware (ai score=83)
VBA32TScope.Trojan.MSIL
MalwarebytesTeslaCrypt.Ransom.Encrypt.DDS
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0PC821
YandexTrojan.Igent.bT0vOj.29
IkarusTrojan.MSIL.Agent
MaxSecureTrojan.Malware.74499699.susgen
FortinetMSIL/GenKryptik.ENGO!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove TeslaCrypt.Ransom.Encrypt.DDS?

TeslaCrypt.Ransom.Encrypt.DDS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment