Ransom Trojan

About “Trojan.Ransom.BYA” infection

Malware Removal

The Trojan.Ransom.BYA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Ransom.BYA virus can do?

  • The binary likely contains encrypted or compressed data.
  • Exhibits possible ransomware file modification behavior
  • Writes a potential ransom message to disk

How to determine Trojan.Ransom.BYA?


File Info:

crc32: A670A1DD
md5: 1399dc1479cd868bbb4ba01ddf9ff5f8
name: 1399DC1479CD868BBB4BA01DDF9FF5F8.mlw
sha1: bb30fcd48e0961ac5d0951e1babdf50c3140af41
sha256: d2977a81ec2adfc39825662f2ae66abe180f98313429661bef8bf763d16ec67e
sha512: 4d164462ac207135dcc6a537e2617380b017f366a4d185e294ac228401fb45fcce20103d89726a496116bb0d89a9a8636e70f9e6a3dfa1017a85c6453b10e6d2
ssdeep: 24576:ZPIzkQ++KpPS61gGZJsgZsUuuBWv7nDfXCgFWHd6QvQ/qpyr0k8vTSa0ZKprq9ac:A+as+PCTvQ/qpyr0keACqEzsAwPwNUKU
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Ransom.BYA also known as:

K7AntiVirusTrojan ( 005479031 )
ALYacTrojan.Ransom.Velso
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.8369
AlibabaRansom:Win32/Crypren.8ed67e42
K7GWTrojan ( 005479031 )
Cybereasonmalicious.479cd8
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.NPU
APEXMalicious
AvastFileRepMalware
KasperskyTrojan-Ransom.Win32.Crypren.aetv
BitDefenderTrojan.Ransom.BYA
NANO-AntivirusTrojan.Win32.Crypmod.eyxqwb
MicroWorld-eScanTrojan.Ransom.BYA
TencentMalware.Win32.Gencirc.114d2700
Ad-AwareTrojan.Ransom.BYA
SophosMal/Generic-S
ComodoMalware@#3pehj5hbcc6z7
BitDefenderThetaGen:NN.ZexaF.34670.xDX@aeYiXqoi
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.th
FireEyeGeneric.mg.1399dc1479cd868b
EmsisoftTrojan.Ransom.BYA (B)
MicrosoftTrojan:Win32/Occamy.B
ArcabitTrojan.Ransom.BYA
AegisLabTrojan.Win32.Crypren.4!c
GDataTrojan.Ransom.BYA
AhnLab-V3Trojan/Win32.Ransom.C2431676
McAfeeArtemis!1399DC1479CD
MAXmalware (ai score=100)
VBA32TrojanRansom.Crypmod
PandaTrj/GdSda.A
RisingTrojan.Filecoder!8.68 (CLOUD)
IkarusTrojan-Ransom.GandCrab
FortinetW32/Generic.AC.40B0AB
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Ransom.e27

How to remove Trojan.Ransom.BYA?

Trojan.Ransom.BYA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment