Ransom Trojan

GenPack:Trojan.Ransom.Sage.O removal

Malware Removal

The GenPack:Trojan.Ransom.Sage.O is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What GenPack:Trojan.Ransom.Sage.O virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Collects information to fingerprint the system

How to determine GenPack:Trojan.Ransom.Sage.O?


File Info:

crc32: 5D4A062E
md5: 9363969ac153ad3cefa1239cc8f50cbd
name: 9363969AC153AD3CEFA1239CC8F50CBD.mlw
sha1: a73c0ded265f1407dd04425e1ce5ae633204909c
sha256: 268e355608923e3d28788869bc847c486867d934d4a5c4da11914154bf682152
sha512: 2c8cd3b6b88ed00cffd9eed7f376f84827665e04f433d26ece6966e70a20d58a62983ed4e5c4e3939648cc3a667f2b25dbd0771abc842d10434dfbd618c4e3bd
ssdeep: 6144:+S1DWM+rOIklNqojE8dYW7/zsDrSXMElVxzBQX/zB39:+7M+rKlNq0EyHoDeXnlV5BQl39
type: MS-DOS executable, MZ for MS-DOS

Version Info:

0: [No Data]

GenPack:Trojan.Ransom.Sage.O also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanGenPack:Trojan.Ransom.Sage.O
FireEyeGeneric.mg.9363969ac153ad3c
McAfeeGeneric.bbi
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforRansom.Win32.Zerber.ebxx
K7AntiVirusTrojan ( 005047df1 )
BitDefenderGenPack:Trojan.Ransom.Sage.O
K7GWTrojan ( 005047df1 )
Cybereasonmalicious.ac153a
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastFileRepMalware
KasperskyTrojan-Ransom.Win32.Zerber.ebxx
AlibabaRansom:Win32/Zerber.37935111
NANO-AntivirusTrojan.Win32.Zerber.epdjqz
AegisLabTrojan.Win32.Zerber.j!c
Ad-AwareGenPack:Trojan.Ransom.Sage.O
EmsisoftGenPack:Trojan.Ransom.Sage.O (B)
ComodoMalware@#32x9yjw4fr3zz
DrWebTrojan.Encoder.11198
ZillyaTrojan.Zerber.Win32.3004
TrendMicroRansom_CERBER.F117EM
SophosML/PE-A
SentinelOneStatic AI – Malicious PE
GDataGenPack:Trojan.Ransom.Sage.O
MAXmalware (ai score=100)
AhnLab-V3Trojan/Win32.Zerber.C2288214
MicrosoftRansom:Win32/Cerber!rfn
CynetMalicious (score: 100)
ESET-NOD32a variant of Win32/Kryptik.FZWY
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34608.smqaaSjr6xgi
ALYacGenPack:Trojan.Ransom.Sage.O
VBA32BScope.Trojan-Ransom.Zerber
MalwarebytesMalware.Heuristic.1003
PandaTrj/CI.A
TrendMicro-HouseCallRansom_CERBER.F117EM
TencentWin32.Trojan.Raas.Auto
YandexTrojan.Zerber!hjQeJke+nbI
IkarusTrojan.Win32.Filecoder
FortinetW32/Zerber.EBXX!tr
WebrootW32.Ransom.Gen
AVGFileRepMalware
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (D)
Qihoo-360Win32/Ransom.Cerber.HxIBar8A

How to remove GenPack:Trojan.Ransom.Sage.O?

GenPack:Trojan.Ransom.Sage.O removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment