Ransom

Should I remove “Ransom.Cryptolocker.4”?

Malware Removal

The Ransom.Cryptolocker.4 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.Cryptolocker.4 virus can do?

  • Authenticode signature is invalid

How to determine Ransom.Cryptolocker.4?


File Info:

name: 4E143B51DBC3970A210F.mlw
path: /opt/CAPEv2/storage/binaries/150ef00120ec0ef7f465839cbb7691251e7793a5c8df97ac0d7ac3ca9b3cbce6
crc32: AA363930
md5: 4e143b51dbc3970a210f2d1d7e4088ed
sha1: 7d0c0ad6b39bcd0f3f71b75f201673b83569e078
sha256: 150ef00120ec0ef7f465839cbb7691251e7793a5c8df97ac0d7ac3ca9b3cbce6
sha512: bd226e93fe09740cc43378acd0096c37784cc725c7c7b8d56c15b574e5ed3b0a46a0dbaca4e5799ba632c0876c1c508b9e148d8efc7696b8910d0a982b344464
ssdeep: 96:oiZ4WPN1XK1sXUbQtKvvSh+KlKeAyFMF4kNmhkmGKb1XxMK6OWCRfEjR:hxXUIKvvSoIKe/MF9cuKb1ykfEjR
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1D9D1E7B2E3C960F1ECC90B72018B763B551B79243795D75C254766A2273AB217F71343
sha3_384: f6e9e05ca6b52f1f59bfca040acaf7c2a4ed8afe187fe0467977db3f49e38a1aac14cfd898615eea7de62140dc577ab1
ep_bytes: a19430001083f81175238b0d24300010
timestamp: 2004-03-13 12:18:00

Version Info:

0: [No Data]

Ransom.Cryptolocker.4 also known as:

BkavW32.Common.1A4A7321
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Ransom.Cryptolocker.4
CAT-QuickHealTrojan.Multi
SkyhighTrojan-FIGL!4E143B51DBC3
McAfeeTrojan-FIGL!4E143B51DBC3
Cylanceunsafe
ZillyaTrojan.Injector.Win32.373349
SangforTrojan.Win32.Injector.Vjfq
K7AntiVirusTrojan ( 0055e3991 )
AlibabaTrojan:Win32/Injector.30ce0e66
K7GWTrojan ( 0055e3991 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.Ransom.Cryptolocker.4
BitDefenderThetaGen:NN.ZedlaF.36680.au4@aypowSei
VirITTrojan.Win32.Inject3.AJUL
SymantecTrojan.Gen.2
ESET-NOD32Win32/Injector.CWKU
CynetMalicious (score: 100)
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Ransom.Cryptolocker.4
NANO-AntivirusTrojan.Win32.Inject.echnev
AvastWin32:Malware-gen
TencentWin32.Trojan.Inject.Ljgl
EmsisoftGen:Variant.Ransom.Cryptolocker.4 (B)
F-SecureTrojan.TR/Injector.CWKU
VIPREGen:Variant.Ransom.Cryptolocker.4
TrendMicroTROJ_GEN.R002C0PA224
SophosMal/Generic-S
IkarusTrojan.Win32.Injector
JiangminTrojan.Win32.Agent.bo
WebrootW32.Malware.Gen
AviraTR/Injector.CWKU
Antiy-AVLTrojan/Win32.Injector
Kingsoftmalware.kb.a.825
MicrosoftTrojan:Win32/Kovter!rfn
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataGen:Variant.Ransom.Cryptolocker.4
GoogleDetected
ALYacGen:Variant.Ransom.Cryptolocker.4
VBA32Trojan.Kovter
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R002C0PA224
RisingRansom.GandCrab!8.F355 (TFE:5:kqkgouoRymG)
YandexTrojan.Injector!Vh9rPkFZFk8
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/Injector.CWKU!tr
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Ransom.Cryptolocker.4?

Ransom.Cryptolocker.4 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment