Ransom

Ransom.GandCrab.ZZ6 malicious file

Malware Removal

The Ransom.GandCrab.ZZ6 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.GandCrab.ZZ6 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Ransom.GandCrab.ZZ6?


File Info:

crc32: B92AD3BD
md5: 75335965774c8c45b123435cfce38ef2
name: 75335965774C8C45B123435CFCE38EF2.mlw
sha1: 1ce43e3645c51aeca05a622522fcbb80d8f0e941
sha256: 00bb643d61092baa5505635057c5ce321bee1950228407a47ac32cc5fea6be73
sha512: cde3e868b75c6c813025993719989d8ef23d1980255450b17810b4eeed17013d6921998f53f7eb4849ffd42834f0053ff7fff4fbf777aa58d3694aea00a0f74b
ssdeep: 6144:y/4Eju1iYJnD9KWdOuhiwNgbvRYo7ADWuQtf8ZbXO82GtGrjLZepht99GwO:Y4Eii8nDcWQA/NgbpDOWu2kn2GtGrjL
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ransom.GandCrab.ZZ6 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Banker1.25755
MicroWorld-eScanTrojan.BRMon.Gen.3
CAT-QuickHealRansom.GandCrab.ZZ6
Qihoo-360Win32/Trojan.56c
ALYacTrojan.BRMon.Gen.3
CylanceUnsafe
ZillyaTrojan.GandCrypt.Win32.84
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0053305e1 )
BitDefenderTrojan.BRMon.Gen.3
K7GWTrojan ( 0052743e1 )
Cybereasonmalicious.5774c8
BitDefenderThetaGen:NN.ZexaF.34590.syW@aCjoBJe
CyrenW32/S-c07995ba!Eldorado
SymantecPacked.Generic.525
APEXMalicious
AvastFileRepMalware
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.Banker1.eyconv
ViRobotTrojan.Win32.U.Ransom.300032
AegisLabTrojan.Win32.GandCrypt.j!c
TencentMalware.Win32.Gencirc.10b2c722
Ad-AwareTrojan.BRMon.Gen.3
EmsisoftTrojan.BRMon.Gen.3 (B)
ComodoTrojWare.Win32.Cloxer.AY@7o68fu
F-SecureHeuristic.HEUR/AGEN.1103299
VIPRETrojan.Win32.Generic!BT
TrendMicroMal_HPGen-37b
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
FireEyeGeneric.mg.75335965774c8c45
SophosML/PE-A + Mal/GandCrab-A
IkarusTrojan-Downloader.Win32.Zurgop
JiangminTrojan.GandCrypt.r
AviraHEUR/AGEN.1103299
Antiy-AVLTrojan[Ransom]/Win32.GandCrypt
MicrosoftRansom:Win32/GandCrab!rfn
ArcabitTrojan.BRMon.Gen.3
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.BRMon.Gen.3
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Gandcrab.R249167
Acronissuspicious
McAfeeGenericRXEC-RH!75335965774C
MAXmalware (ai score=99)
VBA32Trojan.Agentb
MalwarebytesMalware.AI.4096368993
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Kryptik.GDHD
TrendMicro-HouseCallMal_HPGen-37b
RisingTrojan.Kryptik!1.B048 (CLOUD)
YandexTrojan.GenAsa!11UbpZS8OBk
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/GenKryptik.CNAR!tr
AVGFileRepMalware
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)
MaxSecureTrojan.Malware.300983.susgen

How to remove Ransom.GandCrab.ZZ6?

Ransom.GandCrab.ZZ6 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment