Ransom Trojan

Trojan.Ransom.Dalexis.F malicious file

Malware Removal

The Trojan.Ransom.Dalexis.F is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Ransom.Dalexis.F virus can do?

  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Executable file is packed/obfuscated with ASPack
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Ransom.Dalexis.F?


File Info:

name: F49F82D3BA4DA0B7785D.mlw
path: /opt/CAPEv2/storage/binaries/72253970ebcd1e1cd5c45b4f988313e21093081100962bf9e5daf38087b1872f
crc32: 738D19EF
md5: f49f82d3ba4da0b7785d48580fd887c4
sha1: 05c4e788e1cb9df34c653082a855f4fe9f3b7ebc
sha256: 72253970ebcd1e1cd5c45b4f988313e21093081100962bf9e5daf38087b1872f
sha512: 868a7cd397ae3029a11677bec98208f389700a982a2c696c6abb9a7528cc60fbc6a70c28229ff36eff34ddfb08ac91db059381063a0407bc2ba601b663a147ce
ssdeep: 1536:I+Kf/JQBLGxPP1v0OJUxzTdBtFHyZHVXhXd3nxU0LbZgSC9bCAGO0v:I+Kf/JQBLGxPP1v0OJUxzTdBLyZHVRXz
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B473B5FBE06C0691CE1D8CF259A418331BFA6DB5A62D7F94ECB4EE711DBB0428D24941
sha3_384: b893990b7a94e891fa8064c44a273e6c7dba715c373974e962e29624cbd5761e7566d02983de4f444d1be0b36e923918
ep_bytes: 5589e58d65c86a0e6857524000684852
timestamp: 2006-10-05 20:21:48

Version Info:

0: [No Data]

Trojan.Ransom.Dalexis.F also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Cabby.mgEe
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Ransom.Dalexis.F
FireEyeGeneric.mg.f49f82d3ba4da0b7
McAfeeDownloader-FAMV!F49F82D3BA4D
Cylanceunsafe
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan-Downloader ( 00499db21 )
K7GWTrojan-Downloader ( 00499db21 )
Cybereasonmalicious.3ba4da
BaiduWin32.Trojan.Elenoocka.a
CyrenW32/Kryptik.JTV.gen!Eldorado
SymantecDownloader.Ponik
tehtrisGeneric.Malware
ESET-NOD32Win32/TrojanDownloader.Elenoocka.A
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Ransom.Dalexis.F
NANO-AntivirusTrojan.Win32.Cabby.dncxyl
AvastWin32:Crypt-RSD [Trj]
TencentWin32.Trojan.Generic.Kqil
EmsisoftTrojan.Ransom.Dalexis.F (B)
F-SecureTrojan.TR/Cabhot.A.6890
DrWebTrojan.DownLoad3.35539
VIPRETrojan.Ransom.Dalexis.F
TrendMicroTROJ_DALEXIS.SMK
McAfee-GW-EditionBehavesLike.Win32.Generic.lz
Trapminemalicious.high.ml.score
SophosMal/EncPk-ANG
IkarusTrojan-Ransom.CryptoWall3
GDataTrojan.Ransom.Dalexis.F
JiangminTrojanDownloader.Cabby.ru
AviraTR/Cabhot.A.6890
Antiy-AVLTrojan[Downloader]/Win32.Cabby
XcitiumTrojWare.Win32.TrojanDownloader.Elenoocka.BEA@5j9la4
ArcabitTrojan.Ransom.Dalexis.F
ViRobotTrojan.Win32.Ransom.37376
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojanDownloader:Win32/Dalexis.C
GoogleDetected
AhnLab-V3Win-Trojan/CTBLocker.Gen
BitDefenderThetaAI:Packer.3073C7E420
ALYacTrojan.Ransom.Dalexis.F
MAXmalware (ai score=83)
VBA32Trojan.FakeAV.01657
MalwarebytesTrojan.Downloader
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_DALEXIS.SMK
RisingTrojan.Win32.CTB.d (CLASSIC)
SentinelOneStatic AI – Malicious PE
FortinetW32/Kryptik.DBZV!tr
AVGWin32:Crypt-RSD [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Ransom.Dalexis.F?

Trojan.Ransom.Dalexis.F removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment