Ransom Trojan

Should I remove “Trojan-Ransom.Win32.Cryrar.hcz”?

Malware Removal

The Trojan-Ransom.Win32.Cryrar.hcz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Cryrar.hcz virus can do?

  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan-Ransom.Win32.Cryrar.hcz?


File Info:

crc32: 8FA75800
md5: 98ae649a052db0bcd1f38432f9124fbb
name: 98AE649A052DB0BCD1F38432F9124FBB.mlw
sha1: f60b42bdee838fcc7c4568027e5f82bcb5a05dc7
sha256: 9ed3136b9378654b138630ff4d52e59b6c114164b48d05d9218a26f58eb7ed5e
sha512: 4816c96d42d415e0c8a28a05bf0bebaa1eeda01a1f2d1ac2aad1f091e895c260b7da2480eaab52beb60330a57d5d56aa7a31aa950d693d17998d3e003af26320
ssdeep: 6144:3RfxFWUAJZRmxMev6LM/xFsYH74gFb8sA08P:RxFWv/RmBv6I/vsYHb+88P
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Cryrar.hcz also known as:

K7AntiVirusTrojan ( 005324731 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Heur.Ransom.ACCDFISA.2
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (D)
K7GWTrojan ( 005324731 )
Cybereasonmalicious.a052db
CyrenW32/Filecoder.GBEX-1053
ESET-NOD32a variant of Win32/Filecoder.ACCDFISA.A
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Cryrar.hcz
BitDefenderGen:Heur.Ransom.ACCDFISA.2
NANO-AntivirusTrojan.Win32.Cryrar.fcisbg
MicroWorld-eScanGen:Heur.Ransom.ACCDFISA.2
TencentWin32.Trojan.Cryrar.Hvji
Ad-AwareGen:Heur.Ransom.ACCDFISA.2
SophosTroj/Ransom-EZP
ComodoMalware@#2nrdx03d6aay8
BitDefenderThetaGen:NN.ZexaF.34690.rqW@a839l0m
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom.Win32.ACCDFISA.SMTH
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
FireEyeGeneric.mg.98ae649a052db0bc
EmsisoftGen:Heur.Ransom.ACCDFISA.2 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Cryrar.cl
WebrootW32.Trojan.Ransom
AviraHEUR/AGEN.1112622
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Ransom.ACCDFISA.2
AegisLabTrojan.Win32.Cryrar.j!c
GDataWin32.Trojan-Ransom.Accdfisa.A
AhnLab-V3Trojan/Win32.Gen
McAfeeTrojan-FONN!98AE649A052D
MAXmalware (ai score=98)
VBA32TrojanRansom.Cryrar
MalwarebytesMalware.AI.2919163905
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom.Win32.ACCDFISA.SMTH
RisingRansom.Cryrar!8.4549 (CLOUD)
YandexTrojan.GenAsa!4q4bE+zTk7Y
IkarusTrojan-Ransom.Accdfisa
FortinetW32/Injector.ACCDFISA!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.Cryrar.hcz?

Trojan-Ransom.Win32.Cryrar.hcz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment