Malware

Should I remove “Sf:Crypt-BR [Trj]”?

Malware Removal

The Sf:Crypt-BR [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Sf:Crypt-BR [Trj] virus can do?

  • Creates RWX memory
  • Reads data out of its own binary image

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Sf:Crypt-BR [Trj]?


File Info:

crc32: E703FA97
md5: 9d751e4a5d708b9f1ca5f3d97cd07f80
name: 9D751E4A5D708B9F1CA5F3D97CD07F80.mlw
sha1: 444194e5be68cf2a00a23ae37c121edce09b205c
sha256: 925efb45aed61f0bdacfcdcc394cd5d3774aaf05661b08950a7072d02691782d
sha512: b958556ef26c193375d2eba33a0d546f3f873625e48dfdfab80dab2710d14ed07301224f250dee4aec1fa0c2d1ce34621f96ac2f7f0f48d271309e37c0ec2c45
ssdeep: 6144:w0TlB5QSlqqDLPAyO/hcYKuQj9WLVH1GEGMG6clp7AKH:w0TlB5QBqnY+uQj9W5H1GLMP6AKH
type: MS-DOS executable

Version Info:

0: [No Data]

Sf:Crypt-BR [Trj] also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Heur.Mint.Dreidel.nmX@x4dNcTl
FireEyeGeneric.mg.9d751e4a5d708b9f
CAT-QuickHealTrojanPWS.Zbot.Gen
Qihoo-360HEUR/QVM20.1.455B.Malware.Gen
ALYacGen:Heur.Mint.Dreidel.nmX@x4dNcTl
CylanceUnsafe
VIPRETrojan.Win32.Zbot.n (v)
SangforMalware
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderGen:Heur.Mint.Dreidel.nmX@x4dNcTl
K7GWSpyware ( 0029a43a1 )
K7AntiVirusSpyware ( 0029a43a1 )
TrendMicroTSPY_ZBOT.SMQF
BaiduWin32.Trojan.Zbot.a
CyrenW32/Zbot.BR.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastSf:Crypt-BR [Trj]
ClamAVWin.Spyware.Zbot-1275
KasperskyTrojan-Spy.Win32.Zbot.scrb
NANO-AntivirusTrojan.Win32.Panda.fodyfm
RisingStealer.Zbot!1.648A (CLASSIC)
Ad-AwareGen:Heur.Mint.Dreidel.nmX@x4dNcTl
TACHYONTrojan/W32.Agent.226304.II
SophosMal/Zbot-HX
ComodoTrojWare.Win32.Zbot.NEWA@4qfujn
F-SecureTrojan.TR/Spy.Zbot.aoqb.5
DrWebTrojan.PWS.Panda.2401
ZillyaTrojan.ZbotGen.Win32.5
InvinceaML/PE-A + Mal/Zbot-HX
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.dh
EmsisoftGen:Heur.Mint.Dreidel.nmX@x4dNcTl (B)
IkarusTrojan-Spy.Banker.Citadel
JiangminTrojan/Generic.aqwbd
WebrootW32.InfoStealer.Zeus
AviraTR/Spy.Zbot.aoqb.5
MicrosoftPWS:Win32/Zbot!CI
ArcabitTrojan.Mint.Dreidel.E88EC0
ZoneAlarmTrojan-Spy.Win32.Zbot.scrb
GDataGen:Heur.Mint.Dreidel.nmX@x4dNcTl
CynetMalicious (score: 100)
AhnLab-V3Spyware/Win32.Zbot.R27121
Acronissuspicious
McAfeePWS-Zbot.gen.vo
MAXmalware (ai score=89)
VBA32SScope.Trojan.FakeAV.01110
MalwarebytesSpyware.Citadel
PandaTrj/Genetic.gen
ZonerTrojan.Win32.36443
ESET-NOD32a variant of Win32/Spy.Zbot.YW
TrendMicro-HouseCallTSPY_ZBOT.SMQF
TencentTrojan.Win32.Zbot.aaw
YandexTrojan.GenAsa!CxzTiQAZHn0
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Zbot.AT!tr
BitDefenderThetaGen:NN.ZexaF.34634.nmX@a4dNcTl
AVGSf:Crypt-BR [Trj]
Cybereasonmalicious.a5d708
MaxSecureTrojan.Malware.300983.susgen

How to remove Sf:Crypt-BR [Trj]?

Sf:Crypt-BR [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment