Ransom Trojan

Should I remove “Trojan.Ransom.5705”?

Malware Removal

The Trojan.Ransom.5705 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Ransom.5705 virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • Drops a binary and executes it
  • Likely installs a bootkit via raw harddisk modifications
  • Deletes its original binary from disk
  • Attempts to restart the guest VM
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Trojan.Ransom.5705?


File Info:

crc32: 782245BD
md5: 2b47adbf1f3b02331b5fe85ea23957b9
name: 2B47ADBF1F3B02331B5FE85EA23957B9.mlw
sha1: 67612940e69cdc2777970f4b54799c34dc6ac8e1
sha256: efeaff4f9874f73950ad7eea5fc000086655fd70295f04a69cf651d8adc648db
sha512: e649278ec0d76bdd50e7e461b1db4e3ffbcb63cec5ceeb4c333b773cafcebc571fe1833f359bc51f9892a1206a8067bbed5a66cd26e7956fc426fbe1f28abed1
ssdeep: 768:YFb2Pwlvkz4PYJ5+ywrct+5/nVWNza8NX8:+Xkz7H+ywwmdWVR8
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Ransom.5705 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0029be2d1 )
Elasticmalicious (high confidence)
DrWebTrojan.MBRlock.6
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacGen:Variant.Mikey.74604
CylanceUnsafe
ZillyaTrojan.Mbro.Win32.4437
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaRansom:Win32/Genasom.7c826671
K7GWTrojan ( 0029be2d1 )
Cybereasonmalicious.f1f3b0
SymantecTrojan.Bootlock.B
ESET-NOD32a variant of Win32/MBRlock.R
APEXMalicious
TotalDefenseWin32/Ransom.AFV
AvastMBR:Ransom-A [Rtk]
ClamAVWin.Trojan.Ransom-43
KasperskyTrojan-Ransom.Win32.Mbro.rv
BitDefenderGen:Variant.Mikey.74604
NANO-AntivirusTrojan.Win32.Mbro.cvhnvk
ViRobotTrojan.Win32.A.Mbro.139264
MicroWorld-eScanGen:Variant.Mikey.74604
Ad-AwareGen:Variant.Mikey.74604
SophosMal/Generic-S
ComodoTrojWare.Win32.Trojan.Agent.~CRP@3xxg3u
BitDefenderThetaAI:Packer.D7C4FF2F1E
VIPRETrojan.Win32.Ransom.dva (v)
TrendMicroTROJ_RANSOM_BL13015C.TOMC
McAfee-GW-EditionBehavesLike.Win32.Detnat.nm
FireEyeGeneric.mg.2b47adbf1f3b0233
EmsisoftGen:Variant.Mikey.74604 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan/Generic.ifva
WebrootW32.Trojan.Gen
AviraBOO/Ransom.AB
eGambitUnsafe.AI_Score_96%
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/Genasom.DV
ArcabitTrojan.Mikey.D1236C
AegisLabTrojan.Win32.Mbro.luc6
GDataGen:Variant.Mikey.74604
TACHYONTrojan/W32.Mbro.40448.B
AhnLab-V3Trojan/Win32.Mbro.C67070
McAfeeRansom-FVO!2B47ADBF1F3B
MAXmalware (ai score=100)
VBA32Trojan.Ransom.5705
MalwarebytesRansom.FileCryptor
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_RANSOM_BL13015C.TOMC
RisingTrojan.MBRlock!1.66BD (CLOUD)
YandexTrojan.GenAsa!lGGJPPymHD4
IkarusTrojan-Ransom.Mbro
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/MBRlock.C!tr
AVGMBR:Ransom-A [Rtk]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HxMBCcsA

How to remove Trojan.Ransom.5705?

Trojan.Ransom.5705 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment