Ransom Trojan

Trojan-Ransom.NSIS.Xamyh.kcd (file analysis)

Malware Removal

The Trojan-Ransom.NSIS.Xamyh.kcd is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.NSIS.Xamyh.kcd virus can do?

  • Reads data out of its own binary image
  • Anomalous binary characteristics

How to determine Trojan-Ransom.NSIS.Xamyh.kcd?


File Info:

crc32: A6F8A223
md5: 5daf3b4d4821d2ee0b4d4a61d87a823b
name: 5DAF3B4D4821D2EE0B4D4A61D87A823B.mlw
sha1: c9e7d07c77e12badbdcc8bff4246c6bd9fd43751
sha256: e3ac8a78738b00543cf804b14783302491c86e5600937191826fdc40e448b8fa
sha512: 8f0e5fc7fa5ffe990ae9a2ec26d8ff33b6d64ec8360227d5900a6d406798002e7eed682a07885a7691f78da25b15dec51299d85c71ac95aa60e09cd266267230
ssdeep: 1536:UpgpHzb9dZVX9fHMvG0D3XJVcnTa7E5o41ahfT:CgXdZt9P6D3XJVc15o4sV
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Trojan-Ransom.NSIS.Xamyh.kcd also known as:

BkavW32.AIDetect.malware2
CynetMalicious (score: 85)
CAT-QuickHealTrojanRansom.NSIS
CylanceUnsafe
SangforRansom.Win32.MyxaH.8
CrowdStrikewin/malicious_confidence_60% (D)
Cybereasonmalicious.c77e12
ESET-NOD32Win32/Adware.ConvertAd.AJL
APEXMalicious
KasperskyTrojan-Ransom.NSIS.Xamyh.kcd
AlibabaRansom:Win32/Xamyh.8949d3f5
TencentNsis.Trojan.Myxah.Szmd
SophosGeneric PUA MJ (PUA)
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Dropper.qc
JiangminAdWare.ConvertAd.agng
WebrootPua.Adware.Gen
AviraHEUR/AGEN.1124634
MicrosoftPUA:Win32/Presenoker
AegisLabTrojan.NSIS.MyxaH.j!c
AhnLab-V3PUP/Win32.VOPackage.C931723
McAfeeArtemis!5DAF3B4D4821
VBA32Hoax.MyxaH
Qihoo-360Generic/Ransom.Generic.HoMASRAA

How to remove Trojan-Ransom.NSIS.Xamyh.kcd?

Trojan-Ransom.NSIS.Xamyh.kcd removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment