Ransom Trojan

Trojan.Ransom.BGS (file analysis)

Malware Removal

The Trojan.Ransom.BGS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Ransom.BGS virus can do?

  • Network activity detected but not expressed in API logs

How to determine Trojan.Ransom.BGS?


File Info:

crc32: 0AB517ED
md5: f4395cdc9538851d9b641d81a6a625ad
name: F4395CDC9538851D9B641D81A6A625AD.mlw
sha1: c1c67b714b7e4a255f2b437217b7faed1e82c884
sha256: f66632ac896e02a917427e48dfc0ca8d742fbac5e39691530ec1cc28c24101ff
sha512: 3d73b44fe660a6f0a12ab6cd6a7106b8911cacdfedc6f91eeb3adb8bcfe7ee57589244fd7e4d16f918d84acb409b69f458ea40ae3bd532ed8faef978eacd8f6b
ssdeep: 12288:0ATVDGicz2xd3+OeO+OeNhBBhhBBka/3qX4yQmKh87w50ko8cnONRHe0Q1Qe+0D:0AxGw3a/C4RmKh8E50f8cc+r60I1e3J
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Ransom.BGS also known as:

LionicTrojan.Win32.Agent.tqPe
DrWebTrojan.Encoder.13151
CAT-QuickHealRansom.Genasom.A5
ALYacTrojan.Ransom.BGS
CylanceUnsafe
ZillyaTrojan.Ransom.Win32.553
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Filecoder.b694d033
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
ESET-NOD32a variant of Win32/Filecoder.NJB
AvastWin32:Trojan-gen
KasperskyTrojan-Ransom.Win32.Agent.ivd
BitDefenderTrojan.Ransom.BGS
NANO-AntivirusTrojan.Win32.Agent.ejwdjm
MicroWorld-eScanTrojan.Ransom.BGS
TencentWin32.Trojan.Agent.Eawn
Ad-AwareTrojan.Ransom.BGS
SophosMal/Generic-S
ComodoMalware@#rxc0q5po55jx
F-SecureTrojan.TR/Ransom.A
BitDefenderThetaGen:NN.ZexaF.34126.ZuW@aiCnWrbi
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_Agent.R002C0GEC21
McAfee-GW-EditionRDN/Ransom
FireEyeTrojan.Ransom.BGS
EmsisoftTrojan.FileCoder (A)
JiangminTrojan.Agent.aqyl
WebrootW32.Trojan.Ransom
AviraTR/Ransom.A
Antiy-AVLTrojan/Generic.ASMalwS.1FE3F0D
KingsoftWin32.Troj.Ransom.v.(kcloud)
MicrosoftRansom:Win32/FileCryptor
ArcabitTrojan.Ransom.BGS
ZoneAlarmTrojan-Ransom.Win32.Agent.ivd
GDataTrojan.Ransom.BGS
McAfeeRDN/Ransom
MAXmalware (ai score=100)
VBA32Hoax.Agent
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_Agent.R002C0GEC21
YandexTrojan.Agent!fhA31DF3N0I
IkarusTrojan.Ransom
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Trojan-gen

How to remove Trojan.Ransom.BGS?

Trojan.Ransom.BGS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment