Trojan

Trojan.Raccrypt removal guide

Malware Removal

The Trojan.Raccrypt is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Raccrypt virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Divehi
  • The binary likely contains encrypted or compressed data.

How to determine Trojan.Raccrypt?


File Info:

crc32: 3D4E055E
md5: 874c3eb4225bb5ed61518467438e3d6a
name: 874C3EB4225BB5ED61518467438E3D6A.mlw
sha1: 6e961554c4cbea8c13862365625e54c4a2ea2cc0
sha256: 34fbc772b4fb14f8731b348aa877fa91c86d7b216763c16aa43e86a0476457a6
sha512: 93933d196fc60027fedad9bf43443bd4af0c8b9a757d8b9ceaf84bf9100ef00e900dfcab93e9d9c8b039a32f5f211722c46f0a5eb05f84f9123105858a976ec6
ssdeep: 98304:o2S+c7PfS8q+t0cJzn9vLlpYsHWhoA/LI6ZN:pSf7PbB9DxHWhBzI6
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translations: 0x0512 0x00ac

Trojan.Raccrypt also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 00589e1a1 )
LionicTrojan.Win32.Strab.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen15.34323
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Raccrypt
ALYacTrojan.GenericKD.37936638
CylanceUnsafe
SangforTrojan.Win32.Strab.gen
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:Win32/Azorult.647dbded
K7GWTrojan ( 00589e1a1 )
Cybereasonmalicious.4c4cbe
CyrenW32/Kryptik.FRF.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HNEK
APEXMalicious
AvastWin32:BotX-gen [Trj]
ClamAVWin.Trojan.Generic-9906195-0
KasperskyHEUR:Trojan.Win32.Strab.gen
BitDefenderTrojan.GenericKD.37936638
ViRobotTrojan.Win32.Z.Win.4497920
MicroWorld-eScanTrojan.GenericKD.37936638
Ad-AwareTrojan.GenericKD.37936638
SophosMal/Generic-R + Troj/Krypt-DY
Comodofls.noname@0
TrendMicroTROJ_GEN.R002C0DK621
McAfee-GW-EditionPacked-GDT!874C3EB4225B
FireEyeGeneric.mg.874c3eb4225bb5ed
EmsisoftTrojan.GenericKD.37936638 (B)
SentinelOneStatic AI – Suspicious PE
WebrootW32.Trojan.Gen
AviraTR/AD.GoCloudnet.mquyg
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Win32.Kryptik
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Azorult.RW!MTB
GDataWin32.Trojan.BSE.WS9D4D
AhnLab-V3Trojan/Win.Glupteba.R448372
Acronissuspicious
McAfeePacked-GDT!874C3EB4225B
MAXmalware (ai score=89)
VBA32BScope.Backdoor.Agent
MalwarebytesTrojan.MalPack.GS
PandaTrj/RnkBend.A
TrendMicro-HouseCallTROJ_GEN.R002C0DK621
RisingTrojan.Generic@ML.80 (RDMK:DsxqkXDLZsBLxrItE0XALQ)
YandexTrojan.Strab!4+QMhOv3C8M
IkarusTrojan.Win32
MaxSecureTrojan.Malware.124015119.susgen
FortinetW32/GenKryptik.FNRJ!tr
AVGWin32:BotX-gen [Trj]
Paloaltogeneric.ml

How to remove Trojan.Raccrypt?

Trojan.Raccrypt removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment