Ransom Trojan

Trojan-Ransom.Win32.Cryptor.vho (file analysis)

Malware Removal

The Trojan-Ransom.Win32.Cryptor.vho is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Cryptor.vho virus can do?

    How to determine Trojan-Ransom.Win32.Cryptor.vho?

    
    

    File Info:

    crc32: 318121F1
    md5: 8677acff5d7d21d7d201342d1087ac9e
    name: 8677ACFF5D7D21D7D201342D1087AC9E.mlw
    sha1: 9297f22e41da2f9b8761c5f4c52c835006878005
    sha256: c4e7688c1b51433c2def0138016d001c40dbb59e5f9e5ed4731b92583080c1b6
    sha512: 003d2ca54ec4f9bfa8eac5584676dd21791c002c5d41109694b46e4ed6635b6e3fe6a8deca43d8a5b75e3df29f9989a2ca07458a588dd67d87b2344c18f1b370
    ssdeep: 6144:CUrUTUtKedeyqpzSWWGuFoXU1pDQn8RdbraU6FalAxj1Y7J8x4DucqFN14:bUTUtKXB1Saub28RxrRTDucqFU
    type: PE32 executable (console) Intel 80386, for MS Windows

    Version Info:

    0: [No Data]

    Trojan-Ransom.Win32.Cryptor.vho also known as:

    MicroWorld-eScanGen:Heur.Ransom.REntS.Gen.1
    McAfeeGenericRXAA-AA!8677ACFF5D7D
    MalwarebytesRansom.Mock
    SangforTrojan.Win32.Save.a
    BitDefenderGen:Heur.Ransom.REntS.Gen.1
    Cybereasonmalicious.f5d7d2
    ArcabitTrojan.Ransom.REntS.Gen.1
    APEXMalicious
    KasperskyHEUR:Trojan-Ransom.Win32.Cryptor.vho
    RisingRansom.MockRans!8.1237A (TFE:dGZlOgXhfdqO6wh6pg)
    Ad-AwareGen:Heur.Ransom.REntS.Gen.1
    EmsisoftGen:Heur.Ransom.REntS.Gen.1 (B)
    DrWebTrojan.Encoder.33410
    FireEyeGen:Heur.Ransom.REntS.Gen.1
    MAXmalware (ai score=88)
    Antiy-AVLTrojan[Ransom]/Win32.Cryptor
    MicrosoftRansom:Win32/MockCrypter.PA!MTB
    ZoneAlarmHEUR:Trojan-Ransom.Win32.Cryptor.vho
    GDataGen:Heur.Ransom.REntS.Gen.1
    CynetMalicious (score: 100)
    AhnLab-V3Malware/Win32.Generic.C4312860
    VBA32Trojan.Encoder
    ALYacGen:Heur.Ransom.REntS.Gen.1
    FortinetW32/Cryptor.5FB4!tr.ransom
    BitDefenderThetaGen:NN.ZexaF.34608.ILW@aKR37wbi
    AVGWin32:RansomX-gen [Ransom]
    AvastWin32:RansomX-gen [Ransom]

    How to remove Trojan-Ransom.Win32.Cryptor.vho?

    Trojan-Ransom.Win32.Cryptor.vho removal tool
    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.

    About the author

    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Leave a Comment