Ransom Trojan

Trojan.Ransom.RansomLockKD.6162779 removal

Malware Removal

The Trojan.Ransom.RansomLockKD.6162779 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Ransom.RansomLockKD.6162779 virus can do?

  • Executable code extraction
  • Compression (or decompression)
  • Enumerates user accounts on the system
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Creates an excessive number of UDP connection attempts to external IP addresses
  • Attempts to modify desktop wallpaper
  • Exhibits behavior characteristic of Cerber ransomware
  • Attempts to execute a binary from a dead or sinkholed URL
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Attempts to access Bitcoin/ALTCoin wallets
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Trojan.Ransom.RansomLockKD.6162779?


File Info:

crc32: D59DEE65
md5: 877dfb1a0776e94cd42bd9b6eb5cb998
name: 877DFB1A0776E94CD42BD9B6EB5CB998.mlw
sha1: 79f963df08b1aa2489d464c9fcd66dfb7a2f487f
sha256: a023a6d63c4a32e3259810ab1b6aacad64f574edf2446b94747ab759c1c08493
sha512: eefa00120e2b69b238875909d77d23555b77305a005a52be44dcfcf1353a2ad021564b94b737641501a4158225c6fa66c7d0d7b0059a133fe298e95cc9b7d95a
ssdeep: 6144:5pkXGhf1I18m9buqIwa88KUl1BbcWy2EN8pJ6ksCJhc3Qp3A3jrWX:os1I1/uYaxKUl1BbcWwEEksCJhc36IuX
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Trojan.Ransom.RansomLockKD.6162779 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0050251a1 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.5994
CynetMalicious (score: 99)
CAT-QuickHealRansom.Cerber.B
ALYacTrojan.Ransom.RansomLockKD.6162779
CylanceUnsafe
ZillyaTrojan.Agent.Win32.963688
SangforRansom.Win32.GenericCryptor.iku
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 0050251a1 )
Cybereasonmalicious.a0776e
CyrenW32/Cerber.AD1.gen!Eldorado
SymantecRansom.Cerber
ESET-NOD32Win32/Filecoder.Cerber.F
ZonerTrojan.Win32.52526
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Cerber-9791788-0
KasperskyTrojan-Ransom.Win32.GenericCryptor.iku
BitDefenderTrojan.Ransom.RansomLockKD.6162779
NANO-AntivirusTrojan.Nsis.Zerber.ekoene
MicroWorld-eScanTrojan.Ransom.RansomLockKD.6162779
TencentWin32.Trojan.Inject.Auto
Ad-AwareTrojan.Ransom.RansomLockKD.6162779
SophosML/PE-A + Mal/Cerber-AA
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.ObfusRansom.dc
FireEyeGeneric.mg.877dfb1a0776e94c
EmsisoftTrojan.Ransom.RansomLockKD.6162779 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1117984
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/Cerber.J
AegisLabTrojan.Win32.GenericCryptor.j!c
GDataTrojan.Ransom.RansomLockKD.6162779
TACHYONRansom/W32.Cerber.295357
AhnLab-V3Trojan/Win32.Suspack.R193641
McAfeeArtemis!877DFB1A0776
MAXmalware (ai score=100)
VBA32Trojan-Ransom.GenericCryptor
MalwarebytesRansom.Cerber
PandaTrj/CI.A
RisingTrojan.Win32.FileCryptor.ap (CLASSIC)
FortinetW32/Injector.QN!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Ransom.RansomLockKD.6162779?

Trojan.Ransom.RansomLockKD.6162779 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment