Ransom

What is “Ransom.GandCrab.1366”?

Malware Removal

The Ransom.GandCrab.1366 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.GandCrab.1366 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Crashed cuckoomon during analysis. Report this error to the Github repo.
  • Anomalous binary characteristics

How to determine Ransom.GandCrab.1366?


File Info:

crc32: 60DAC686
md5: 034bb041a157ca2979857a5ac0cbf0f0
name: 034BB041A157CA2979857A5AC0CBF0F0.mlw
sha1: 20f4ab88d5ee32ce532c272afc0bf85581e86da8
sha256: 0e51bc34c88d69e98bf914b063dba51ffbb9a66d0e466bf627805c889db82fc6
sha512: 5b847fdd13bc521613bff0176b02c88285fda661f3bbc1afe91b0c708b62ba9aafa900008b1fee8da793042ef774659012a64addf5d9266a6b2f886acc25085a
ssdeep: 6144:M1wwfO8JSm+kWdjDEuzwq1omwNZClW+QAMn0md7/F:RUHSfkM5JnblWHAX
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ransom.GandCrab.1366 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00516fdf1 )
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop8.35051
CynetMalicious (score: 100)
ALYacGen:Variant.Ransom.GandCrab.1366
CylanceUnsafe
ZillyaTrojan.GenericKD.Win32.155745
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojan:Win32/Chapak.fe842fbd
K7GWTrojan ( 00516fdf1 )
Cybereasonmalicious.1a157c
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GJWW
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan.Win32.Chapak.aqod
BitDefenderGen:Variant.Ransom.GandCrab.1366
NANO-AntivirusTrojan.Win32.Kryptik.fgtcvu
MicroWorld-eScanGen:Variant.Ransom.GandCrab.1366
TencentWin32.Trojan.Chapak.Crj
Ad-AwareGen:Variant.Ransom.GandCrab.1366
SophosMal/Generic-S
ComodoMalware@#3ve72q4bwt6gy
BitDefenderThetaGen:NN.ZexaF.34678.ruW@a0HQ!ed
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
FireEyeGeneric.mg.034bb041a157ca29
EmsisoftGen:Variant.Ransom.GandCrab.1366 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.GandCrypt.ix
WebrootW32.Adware.Gen
AviraHEUR/AGEN.1119074
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Predator!ml
ArcabitTrojan.Ransom.GandCrab.D556
AegisLabTrojan.Win32.Chapak.4!c
GDataGen:Variant.Ransom.GandCrab.1366
TACHYONTrojan/W32.Chapak.278528
Acronissuspicious
McAfeeTrojan-FPYT!034BB041A157
MAXmalware (ai score=100)
VBA32Trojan.MulDrop
MalwarebytesMachineLearning/Anomalous.100%
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B3B1 (CLOUD)
YandexTrojan.GenAsa!yQihSkPftd4
IkarusTrojan.Brsecmon
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.CIHP!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Chapak.HwoCEpsA

How to remove Ransom.GandCrab.1366?

Ransom.GandCrab.1366 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment