Ransom Trojan

Trojan.Ransom.Petya.Gen.1 (B) removal guide

Malware Removal

The Trojan.Ransom.Petya.Gen.1 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Ransom.Petya.Gen.1 (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Anomalous binary characteristics

How to determine Trojan.Ransom.Petya.Gen.1 (B)?


File Info:

crc32: C49C8BFF
md5: 4446f9b028259dfe6a583c6d8350d77b
name: 4446F9B028259DFE6A583C6D8350D77B.mlw
sha1: 2edc50f5a5b26bd242b2c9e9c85f491f89bb1d3a
sha256: 80b6336586b3c453aa55939ad420f12707dcce273a9093f70fe038351cc15870
sha512: 6cb2b174f61b5c78cd68d2942610b60ff2c5564fa806b142e7b97e3863fac25785645a8efc80799a8069ff8fc534eeaacdc855026d4133acac1914c413661198
ssdeep: 6144:eEuLBylG97qKRVTc58zDof2y80BlMEOzX:e1mg20Do+9EOzX
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Ransom.Petya.Gen.1 (B) also known as:

BkavW32.AIDetect.malware1
K7AntiVirusAdware ( 004f16931 )
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.12243
CynetMalicious (score: 85)
CAT-QuickHealSoftwareBundler.Prepscram.Y7
CylanceUnsafe
ZillyaTrojan.Yakes.Win32.66771
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/IStartSurf.6f4c8913
K7GWAdware ( 004f16931 )
Cybereasonmalicious.028259
BaiduWin32.Trojan.Kryptik.awg
CyrenW32/S-17814750!Eldorado
SymantecDownloader
ESET-NOD32a variant of Win32/IStartSurf.AU potentially unwanted
APEXMalicious
AvastWin32:Dropper-gen [Drp]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Ransom.Petya.Gen.1
NANO-AntivirusTrojan.Win32.Vittalia.edezko
SUPERAntiSpywareRansom.Petya/Variant
MicroWorld-eScanTrojan.Ransom.Petya.Gen.1
TencentMalware.Win32.Gencirc.10b18c26
Ad-AwareTrojan.Ransom.Petya.Gen.1
SophosGeneric PUA CO (PUA)
ComodoApplication.Win32.IStartSurf.BA@6dd8oi
BitDefenderThetaGen:NN.ZexaF.34628.rCW@a8Qz23ai
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_FRS.0NA103JN18
McAfee-GW-EditionBehavesLike.Win32.Generic.dm
FireEyeGeneric.mg.4446f9b028259dfe
EmsisoftTrojan.Ransom.Petya.Gen.1 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1133072
eGambitUnsafe.AI_Score_100%
KingsoftWin32.Troj.Yakes.pt.(kcloud)
MicrosoftSoftwareBundler:Win32/Prepscram
ArcabitTrojan.Ransom.Petya.Gen.1
AegisLabTrojan.Win32.Generic.4!c
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.Ransom.Petya.Gen.1
TACHYONTrojan/W32.Yakes.289792.D
AhnLab-V3Trojan/Win32.Petya.R183092
Acronissuspicious
McAfeeAdware-InstCap
MAXmalware (ai score=100)
VBA32BScope.Trojan.Vittalia
MalwarebytesPUP.Optional.IStartSurf
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_FRS.0NA103JN18
RisingTrojan.Kryptik!8.8 (CLOUD)
YandexTrojan.Agent!1bdX36oEL0M
IkarusPUA.Downloader
FortinetW32/IStartSurf.PTYZ!tr
AVGWin32:Dropper-gen [Drp]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HgIASOQA

How to remove Trojan.Ransom.Petya.Gen.1 (B)?

Trojan.Ransom.Petya.Gen.1 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment