Ransom Trojan

Trojan.Ransom.8403 removal

Malware Removal

The Trojan.Ransom.8403 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Ransom.8403 virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Creates an autorun.inf file
  • Uses Windows utilities for basic functionality
  • Deletes its original binary from disk
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Clears Windows events or logs
  • Anomalous binary characteristics
  • Clears web history
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Ransom.8403?


File Info:

crc32: 7A3A7ECC
md5: afeff1d10355b039e5ef6a8e4e58d3b9
name: AFEFF1D10355B039E5EF6A8E4E58D3B9.mlw
sha1: feba76e4a3bda848c1d5c39c607bf68f93010329
sha256: 57ffa860230b0695899217e8575677df836712f72897a4537832f9ecba35c1ca
sha512: 511169fabd1e9102170c5dbf4bb9592a2c0a6c082512063714a9c138dff49bfe31c52dcdd4c3f647688018bc690fd1e01f64729e2563bb8a9c7ec660b6efae62
ssdeep: 384:iz4m429P+5QMgCws/gTKwdWQwwmXgO/uCeu6QZxUioi2BDmkY2ns5h84K3i:iz4h2BdEidQwog8uluZxfoLNYIC+4K
type: PE32 executable (console) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Trojan.Ransom.8403 also known as:

K7AntiVirusRiskware ( 0040eff71 )
LionicTrojan.Win32.KillFiles.4!c
DrWebTrojan.PWS.Egspy.25
ALYacTrojan.Ransom.8403
CylanceUnsafe
AlibabaTrojan:Win32/KillFiles.d293f55d
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.10355b
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.KillFiles
BitDefenderTrojan.Ransom.8403
NANO-AntivirusTrojan.Win32.Egspy.fhndkc
MicroWorld-eScanTrojan.Ransom.8403
TencentWin32.Trojan.Killfiles.Lsmh
Ad-AwareTrojan.Ransom.8403
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZelphiF.34170.bmGfaOlgjab
McAfee-GW-EditionBehavesLike.Win32.Picsys.mc
FireEyeGeneric.mg.afeff1d10355b039
EmsisoftTrojan.Ransom.8403 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.KillFiles.dq
eGambitUnsafe.AI_Score_98%
MicrosoftTrojan:Win32/Ymacco.AA57
GDataTrojan.Ransom.8403
AhnLab-V3Malware/Win32.Generic.C2982746
McAfeeArtemis!AFEFF1D10355
MAXmalware (ai score=100)
VBA32TScope.Trojan.Delf
PandaTrj/GdSda.A
YandexTrojan.KillFiles!5YjHuzGvVtY
IkarusTrojan-Ransom
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Killfiles!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Ransom.8403?

Trojan.Ransom.8403 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment