Trojan

Trojan.HTML.Ramnit.A malicious file

Malware Removal

The Trojan.HTML.Ramnit.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.HTML.Ramnit.A virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine Trojan.HTML.Ramnit.A?


File Info:

name: D0D6B883A729A5A2A695.mlw
path: /opt/CAPEv2/storage/binaries/4f1031cd78e7f68997c02d40ac8c7d8632158310760d83d93baae28ef69cde28
crc32: CED1A8B5
md5: d0d6b883a729a5a2a695c4aba65cd0d0
sha1: 93c1b01ba95fae0ed626c134cfbe72e7b6b5430a
sha256: 4f1031cd78e7f68997c02d40ac8c7d8632158310760d83d93baae28ef69cde28
sha512: ed17fb9d04417e3a886e74db55dcbf90fe6314a4104d7e20ef73bccc96e25a76f5df7ba745e6e9d117d57bd5824b7498d7212ee7a8f12d7fb71157d254b00594
ssdeep: 3072:KYQ6YNMoNvy45XT/wMd7yfkMY+BES09JXAnyrZalI+Y:Dq5XT/wMdesMYod+X3oI+Y
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T18C147B4622E501C2D83656B9EA363A88DB377123C2F1C0183DAD699E4FF7E658413FE5
sha3_384: d9cf36f4aad0ca0eff5bd43d8df2a9f4e03303e1f11374462d613a498215b23fdd364f4e8465cf98ee7ddfb2a24e0fec
ep_bytes: ff250020400000000000000000000000
timestamp: 2017-02-24 01:21:10

Version Info:

0: [No Data]

Trojan.HTML.Ramnit.A also known as:

LionicTrojan.Script.Generic.4!c
MicroWorld-eScanTrojan.HTML.Ramnit.A
SkyhighW32/Ramnit.a!htm.f
McAfeeW32/Ramnit.a!htm.f
Cylanceunsafe
ZillyaTrojan.Nimnul.Script.109
AlibabaTrojan:Script/Ramnit.40682469
ArcabitTrojan.HTML.Ramnit.A
SymantecJS.Malscript!g1
CynetMalicious (score: 99)
ClamAVWin.Dropper.Ramnit-9821749-0
KasperskyHEUR:Trojan.Script.Agent.gen
BitDefenderTrojan.HTML.Ramnit.A
AvastWin32:Dropper-OGZ [Drp]
SophosMal/Generic-S
F-SecureMalware.VBS/Ramnit.abcd
VIPRETrojan.HTML.Ramnit.A
EmsisoftTrojan.HTML.Ramnit.A (B)
IkarusTrojan.HTML.Ramnit
JiangminTrojan.Script.aslt
VaristVBS/Ramnit.B
AviraVBS/Ramnit.abcd
Antiy-AVLTrojan[Dropper]/VBS.Agent.bp
XcitiumMalware@#2io43wd8lgfij
MicrosoftProgram:Win32/Ymacco.AA4F
ZoneAlarmHEUR:Trojan.Script.Agent.gen
GDataTrojan.HTML.Ramnit.A
GoogleDetected
BitDefenderThetaGen:NN.ZexaF.36680.dmKfaS3hrPac
YandexVBS.Ramnit.T
FortinetVBS/Dropper.DL!tr
AVGWin32:Dropper-OGZ [Drp]
DeepInstinctMALICIOUS

How to remove Trojan.HTML.Ramnit.A?

Trojan.HTML.Ramnit.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment