Ransom

Ransom.DCRTR removal instruction

Malware Removal

The Ransom.DCRTR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.DCRTR virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX

How to determine Ransom.DCRTR?


File Info:

crc32: 970165BA
md5: ff23cd4f45d231f8af9f23a2e730bee6
name: FF23CD4F45D231F8AF9F23A2E730BEE6.mlw
sha1: 0eea13dc19ab5de9ec7ffd81ef89bddf5994f6ef
sha256: 4ce5dda2c3d39cc6c22058add4b64fbedc20f11ba06768b0a3b959f20c88f5fa
sha512: 78c90354ca919c7bdce56034b1a432e7c3a0860b9faf9d351f74c50c3a8521c343a29d5c9c8babbedcc741acdc4138dc6e3cdc2c8e337f97ed5b99cf583102e8
ssdeep: 12288:8IOrPkyraGIsfTr0HdhpNCzC2dMdW7hgt0QT1fHs:3OrsLGt7r0HS38W2p
type: PE32+ executable (console) x86-64, for MS Windows

Version Info:

0: [No Data]

Ransom.DCRTR also known as:

K7AntiVirusTrojan ( 0056a7d81 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.32125
CynetMalicious (score: 100)
ALYacTrojan.Ransom.Filecoder
CylanceUnsafe
ZillyaTrojan.Filecoder.Win64.9108
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Filecoder.5a3387cd
K7GWTrojan ( 0056a7d81 )
Cybereasonmalicious.f45d23
CyrenW64/Trojan.TFHE-5214
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win64/Filecoder.FONIX.A
APEXMalicious
AvastWin64:RansomX-gen [Ransom]
KasperskyTrojan-Ransom.Win32.Fonix.a
BitDefenderTrojan.Ransomware.GenericKDS.34159120
NANO-AntivirusTrojan.Win64.Diss.hnqbgk
MicroWorld-eScanTrojan.Ransomware.GenericKDS.34159120
TencentMalware.Win32.Gencirc.11a681b3
Ad-AwareTrojan.Ransomware.GenericKDS.34159120
SophosMal/Generic-S
ComodoMalware@#3qc280ho9eud8
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_FonixCrypter.R002C0DF621
McAfee-GW-EditionBehavesLike.Win64.Generic.hc
FireEyeGeneric.mg.ff23cd4f45d231f8
EmsisoftTrojan.Ransomware.GenericKDS.34159120 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Diss.fd
AviraTR/FileCoder.zcrtt
eGambitUnsafe.AI_Score_98%
Antiy-AVLTrojan/Generic.ASMalwS.30B5226
KingsoftWin32.Troj.Diss.(kcloud)
MicrosoftRansom:Win64/FonixCrypt.AC!MTB
ArcabitTrojan.Ransomware.GenericS.D2093A10
AegisLabTrojan.Win32.Diss.4!c
GDataTrojan.Ransomware.GenericKDS.34159120
AhnLab-V3Trojan/Win32.RL_FileCoder.R353829
McAfeeGenericRXAA-AA!FF23CD4F45D2
MAXmalware (ai score=100)
VBA32Trojan.Diss
MalwarebytesRansom.DCRTR
PandaTrj/CI.A
IkarusTrojan-Ransom.FileCrypter
MaxSecureTrojan.Malware.109146490.susgen
FortinetW64/Filecoder.BY!tr
AVGWin64:RansomX-gen [Ransom]
Paloaltogeneric.ml

How to remove Ransom.DCRTR?

Ransom.DCRTR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment