Categories: RansomTrojan

Trojan.Ransom.Dalexis.F malicious file

The Trojan.Ransom.Dalexis.F is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Ransom.Dalexis.F virus can do?

  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Executable file is packed/obfuscated with ASPack
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Ransom.Dalexis.F?


File Info:

name: F49F82D3BA4DA0B7785D.mlwpath: /opt/CAPEv2/storage/binaries/72253970ebcd1e1cd5c45b4f988313e21093081100962bf9e5daf38087b1872fcrc32: 738D19EFmd5: f49f82d3ba4da0b7785d48580fd887c4sha1: 05c4e788e1cb9df34c653082a855f4fe9f3b7ebcsha256: 72253970ebcd1e1cd5c45b4f988313e21093081100962bf9e5daf38087b1872fsha512: 868a7cd397ae3029a11677bec98208f389700a982a2c696c6abb9a7528cc60fbc6a70c28229ff36eff34ddfb08ac91db059381063a0407bc2ba601b663a147cessdeep: 1536:I+Kf/JQBLGxPP1v0OJUxzTdBtFHyZHVXhXd3nxU0LbZgSC9bCAGO0v:I+Kf/JQBLGxPP1v0OJUxzTdBLyZHVRXztype: PE32 executable (GUI) Intel 80386, for MS Windowstlsh: T1B473B5FBE06C0691CE1D8CF259A418331BFA6DB5A62D7F94ECB4EE711DBB0428D24941sha3_384: b893990b7a94e891fa8064c44a273e6c7dba715c373974e962e29624cbd5761e7566d02983de4f444d1be0b36e923918ep_bytes: 5589e58d65c86a0e6857524000684852timestamp: 2006-10-05 20:21:48

Version Info:

0: [No Data]

Trojan.Ransom.Dalexis.F also known as:

Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Cabby.mgEe
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.Ransom.Dalexis.F
FireEye Generic.mg.f49f82d3ba4da0b7
McAfee Downloader-FAMV!F49F82D3BA4D
Cylance unsafe
Sangfor Suspicious.Win32.Save.ins
K7AntiVirus Trojan-Downloader ( 00499db21 )
K7GW Trojan-Downloader ( 00499db21 )
Cybereason malicious.3ba4da
Baidu Win32.Trojan.Elenoocka.a
Cyren W32/Kryptik.JTV.gen!Eldorado
Symantec Downloader.Ponik
tehtris Generic.Malware
ESET-NOD32 Win32/TrojanDownloader.Elenoocka.A
APEX Malicious
Cynet Malicious (score: 100)
Kaspersky HEUR:Trojan.Win32.Generic
BitDefender Trojan.Ransom.Dalexis.F
NANO-Antivirus Trojan.Win32.Cabby.dncxyl
Avast Win32:Crypt-RSD [Trj]
Tencent Win32.Trojan.Generic.Kqil
Emsisoft Trojan.Ransom.Dalexis.F (B)
F-Secure Trojan.TR/Cabhot.A.6890
DrWeb Trojan.DownLoad3.35539
VIPRE Trojan.Ransom.Dalexis.F
TrendMicro TROJ_DALEXIS.SMK
McAfee-GW-Edition BehavesLike.Win32.Generic.lz
Trapmine malicious.high.ml.score
Sophos Mal/EncPk-ANG
Ikarus Trojan-Ransom.CryptoWall3
GData Trojan.Ransom.Dalexis.F
Jiangmin TrojanDownloader.Cabby.ru
Avira TR/Cabhot.A.6890
Antiy-AVL Trojan[Downloader]/Win32.Cabby
Xcitium TrojWare.Win32.TrojanDownloader.Elenoocka.BEA@5j9la4
Arcabit Trojan.Ransom.Dalexis.F
ViRobot Trojan.Win32.Ransom.37376
ZoneAlarm HEUR:Trojan.Win32.Generic
Microsoft TrojanDownloader:Win32/Dalexis.C
Google Detected
AhnLab-V3 Win-Trojan/CTBLocker.Gen
BitDefenderTheta AI:Packer.3073C7E420
ALYac Trojan.Ransom.Dalexis.F
MAX malware (ai score=83)
VBA32 Trojan.FakeAV.01657
Malwarebytes Trojan.Downloader
Panda Trj/CI.A
TrendMicro-HouseCall TROJ_DALEXIS.SMK
Rising Trojan.Win32.CTB.d (CLASSIC)
SentinelOne Static AI – Malicious PE
Fortinet W32/Kryptik.DBZV!tr
AVG Win32:Crypt-RSD [Trj]
DeepInstinct MALICIOUS
CrowdStrike win/malicious_confidence_100% (W)

How to remove Trojan.Ransom.Dalexis.F?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

Trojan.Swrort.S23689749 removal

The Trojan.Swrort.S23689749 is considered dangerous by lots of security experts. When this infection is active,…

40 mins ago

Zusy.318182 removal

The Zusy.318182 is considered dangerous by lots of security experts. When this infection is active,…

3 hours ago

Win32:Regrun-LY [Trj] (file analysis)

The Win32:Regrun-LY [Trj] is considered dangerous by lots of security experts. When this infection is…

3 hours ago

MSIL/Kryptik.AJRE (file analysis)

The MSIL/Kryptik.AJRE is considered dangerous by lots of security experts. When this infection is active,…

3 hours ago

Trojan.Generic.35780066 removal

The Trojan.Generic.35780066 is considered dangerous by lots of security experts. When this infection is active,…

3 hours ago

Win32/Agent.AFBR information

The Win32/Agent.AFBR is considered dangerous by lots of security experts. When this infection is active,…

3 hours ago