Ransom Trojan

Trojan.Ransom.Executioner removal tips

Malware Removal

The Trojan.Ransom.Executioner is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Ransom.Executioner virus can do?

    How to determine Trojan.Ransom.Executioner?

    
    

    File Info:

    crc32: 4B04A7A6
    md5: 48854cd3e733e0c7614c2d6143a95248
    name: 48854CD3E733E0C7614C2D6143A95248.mlw
    sha1: d07696a06a06530c06d0994d340ca5fb40b29437
    sha256: 4b1c9841c0901cf4f4433144c417007edadef9b44f24f283fb784060cbb2d73a
    sha512: 05b2bd1fc9a40199bd13e8c38c8620be1c2e700e834cfb07684779cdf3b1af5e24e9fb1b13c811cf70936e7ad66f54fc62f05ee641733fbff85f08915c32aef5
    ssdeep: 3072:mOnhbZL19M+lmsolAIrRuw+mqv9j1MWLQB2:m+bO+lDAAe
    type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

    Version Info:

    Translation: 0x0000 0x04b0
    LegalCopyright: Copyright xa9 2017
    Assembly Version: 1.0.0.0
    InternalName: Executioner.exe
    FileVersion: 1.0.0.0
    CompanyName: Exectuioner
    LegalTrademarks:
    Comments:
    ProductName:
    ProductVersion: 1.0.0.0
    FileDescription: Exectuioner
    OriginalFilename: Executioner.exe

    Trojan.Ransom.Executioner also known as:

    K7AntiVirusTrojan ( 004de29f1 )
    Elasticmalicious (high confidence)
    DrWebTrojan.Encoder.10598
    CynetMalicious (score: 90)
    ALYacTrojan.Ransom.Executioner
    CylanceUnsafe
    ZillyaTrojan.Filecoder.Win32.6980
    SangforTrojan.Win32.Save.a
    CrowdStrikewin/malicious_confidence_100% (W)
    AlibabaRansom:MSIL/Ryzerlo.a0330fab
    K7GWTrojan ( 004de29f1 )
    Cybereasonmalicious.3e733e
    CyrenW32/Trojan.JTQF-2952
    SymantecRansom.HiddenTear!g1
    ESET-NOD32a variant of MSIL/Filecoder.AK
    APEXMalicious
    AvastWin32:Malware-gen
    ClamAVWin.Ransomware.Hiddentear-9752356-0
    KasperskyHEUR:Trojan.Win32.Generic
    BitDefenderGen:Heur.Ransom.REntS.Gen.1
    NANO-AntivirusTrojan.Win32.Encoder.eqkxcs
    MicroWorld-eScanGen:Heur.Ransom.REntS.Gen.1
    TencentMalware.Win32.Gencirc.114986f2
    Ad-AwareGen:Heur.Ransom.REntS.Gen.1
    SophosMal/Generic-R + Troj/Cryptear-A
    BitDefenderThetaGen:NN.ZemsilF.34670.hm0@aaDGodg
    VIPRETrojan.Win32.Generic!BT
    TrendMicroRansom_EXECUTIONER.A
    McAfee-GW-EditionGenericRXBZ-HL!48854CD3E733
    FireEyeGeneric.mg.48854cd3e733e0c7
    EmsisoftGen:Heur.Ransom.REntS.Gen.1 (B)
    SentinelOneStatic AI – Malicious PE
    AviraTR/Dropper.MSIL.Gen
    eGambitUnsafe.AI_Score_99%
    MicrosoftRansom:MSIL/Ryzerlo.A
    ArcabitTrojan.Ransom.REntS.Gen.1
    AegisLabTrojan.Win32.Generic.4!c
    GDataGen:Heur.Ransom.REntS.Gen.1
    AhnLab-V3Trojan/Win32.Ryzerlo.C2395800
    McAfeeGenericRXBZ-HL!48854CD3E733
    MAXmalware (ai score=100)
    VBA32TScope.Trojan.MSIL
    MalwarebytesMalware.AI.4232076441
    PandaTrj/GdSda.A
    TrendMicro-HouseCallRansom_EXECUTIONER.A
    RisingRansom.Ryzerlo!8.782 (CLOUD)
    YandexTrojan.Agent!9MG89bOiMlg
    IkarusTrojan-Ransom.FileCrypter
    FortinetMSIL/Filecoder.AK!tr.ransom
    AVGWin32:Malware-gen
    Paloaltogeneric.ml
    Qihoo-360Win32/TrojanDropper.Generic.HwMAiqIA

    How to remove Trojan.Ransom.Executioner?

    Trojan.Ransom.Executioner removal tool
    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.

    About the author

    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Leave a Comment