Ransom Trojan

Trojan-Ransom.Win32.CryFile.zxa removal tips

Malware Removal

The Trojan-Ransom.Win32.CryFile.zxa is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.CryFile.zxa virus can do?

  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan-Ransom.Win32.CryFile.zxa?


File Info:

crc32: 118CDEAF
md5: 540ddeb1e68518a664fb6979118ac552
name: 540DDEB1E68518A664FB6979118AC552.mlw
sha1: 2d1a03bdf12fee4fe104f7f13f054cad6b03406f
sha256: 2b4a672c5f8b4d14366adbd54c27426acab55fa3d0fc2a290cac143b028c5b64
sha512: 365fefa879b62e37da10ce7e75a847deb2a9a578f79019e461bedc075a291af5aa64bd42bd3969e72b1d1194dba9bc70ce760076db4ff5cae5e5fb8d8df74ea1
ssdeep: 6144:PRmL7whd1diJFdqFOYHpLSXH7/HEnkKGOmYHTPR68DUeJN:ZgIdCFdSZHZWbHEnFTmYPR68QA
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-Ransom.Win32.CryFile.zxa also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 004f6e981 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.26375
CynetMalicious (score: 100)
ALYacTrojan.Ransom.Scarab
CylanceUnsafe
K7GWTrojan ( 004f6e981 )
Cybereasonmalicious.1e6851
CyrenW32/Filecoder.D.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/Filecoder.FS
APEXMalicious
AvastFileRepMalware
ClamAVWin.Ransomware.Deepscan-6975721-0
KasperskyTrojan-Ransom.Win32.CryFile.zxa
BitDefenderDeepScan:Generic.Ransom.Amnesia.6F36A029
NANO-AntivirusTrojan.Win32.Encoder.ewdzie
MicroWorld-eScanDeepScan:Generic.Ransom.Amnesia.6F36A029
SophosGeneric ML PUA (PUA)
ComodoMalware@#80hvuqzneck
BitDefenderThetaAI:Packer.9EC947A81B
VIPREFraudTool.Win32.SecurityShield.ek!c (v)
TrendMicroMal_Purge
McAfee-GW-EditionBehavesLike.Win32.Dropper.fc
FireEyeGeneric.mg.540ddeb1e68518a6
EmsisoftDeepScan:Generic.Ransom.Amnesia.6F36A029 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
AviraTR/Downloader.Gen
Antiy-AVLTrojan/Generic.ASMalwS.235FED0
MicrosoftRansom:Win32/Kitoles.A
GDataDeepScan:Generic.Ransom.Amnesia.6F36A029
McAfeeArtemis!540DDEB1E685
MAXmalware (ai score=100)
VBA32BScope.Trojan.Encoder
MalwarebytesRansom.Scarab
RisingRansom.Scarab!1.BACD (CLASSIC)
YandexTrojan.GenAsa!bXAtAcuJUJk
IkarusTrojan-Ransom.FileCrypter
FortinetW32/Msht.GJ!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.CryFile.zxa?

Trojan-Ransom.Win32.CryFile.zxa removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment