Ransom

Win32:ShellCode-CU [Ransom] information

Malware Removal

The Win32:ShellCode-CU [Ransom] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:ShellCode-CU [Ransom] virus can do?

  • Anomalous binary characteristics

How to determine Win32:ShellCode-CU [Ransom]?


File Info:

crc32: CBA88D9F
md5: 5c18f867c1ca188643e4d1ec66f50cc7
name: 5C18F867C1CA188643E4D1EC66F50CC7.mlw
sha1: b1c42961e4119192c6a20673e725fd0cd589c8d1
sha256: bcdf7bf3a7c0c7dc3d3eb0686aad0ac04d2fcc5c2262f85c8f162cecfd2b33a5
sha512: 8efecdebbf579697493db9d986cb7511af1447466142b322311c93e1881c2424d0eb39d12e80f8d31dd181c262e2beeb0c40b351e52ba3ce2b294a8125a3d829
ssdeep: 384:xkvM5pRCAXp5+Ie/ghiaOh8dkLrc0KTb5EX4AVNnhnTUkWsrI4:HgAXf+QhitHc0KTb5EX4kOYX
type: PE32+ executable (GUI) x86-64, for MS Windows

Version Info:

0: [No Data]

Win32:ShellCode-CU [Ransom] also known as:

K7AntiVirusTrojan ( 0057ca3c1 )
CynetMalicious (score: 100)
ALYacGen:Heur.Ransom.REntS.Gen.1
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (W)
K7GWTrojan ( 0057ca3c1 )
Cybereasonmalicious.7c1ca1
CyrenW64/Kryptik.EGT.gen!Eldorado
SymantecW97M.Downloader
ESET-NOD32a variant of Win64/GenKryptik.FFNR
APEXMalicious
AvastWin32:ShellCode-CU [Ransom]
KasperskyHEUR:Trojan-Downloader.Script.Generic
BitDefenderGen:Heur.Ransom.REntS.Gen.1
MicroWorld-eScanGen:Heur.Ransom.REntS.Gen.1
Ad-AwareGen:Heur.Ransom.REntS.Gen.1
SophosMal/Generic-S
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_ContiCrypt.R067C0DFD21
McAfee-GW-EditionArtemis
FireEyeGeneric.mg.5c18f867c1ca1886
EmsisoftGen:Heur.Ransom.REntS.Gen.1 (B)
AviraTR/Crypt.Agent.lhnok
MicrosoftRansom:Win64/ContiCrypt.PG!MTB
GDataGen:Heur.Ransom.REntS.Gen.1
AhnLab-V3Ransomware/Win.Filecoder.C4478224
McAfeeArtemis!5C18F867C1CA
MAXmalware (ai score=88)
MalwarebytesRansom.FileLocker
TrendMicro-HouseCallRansom_ContiCrypt.R067C0DFD21
IkarusTrojan.Win64.Krypt
MaxSecureTrojan.Malware.1767938.susgen
FortinetW64/GenKryptik.FFNR!tr
AVGWin32:ShellCode-CU [Ransom]

How to remove Win32:ShellCode-CU [Ransom]?

Win32:ShellCode-CU [Ransom] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment