Ransom Trojan

Trojan-Ransom.Win32.Cryrar.hef (file analysis)

Malware Removal

The Trojan-Ransom.Win32.Cryrar.hef is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Cryrar.hef virus can do?

  • Creates a hidden or system file
  • Anomalous binary characteristics

How to determine Trojan-Ransom.Win32.Cryrar.hef?


File Info:

crc32: 3EB64A7C
md5: 7db80598b130c346ff592779f1a24f31
name: 7DB80598B130C346FF592779F1A24F31.mlw
sha1: 13b0d4e09cb70fcfc573949c87dc75e811b89d10
sha256: 90541634866b1ba30100f02d3cbb15c7b72b43a6660dd71cb9956c6e3dc1b44c
sha512: 7950ac0903722fae296a56a422f8a09eaf4f348b316533c71cdbf69e3cfa2c80be886a5553571325fc7c85161a39c355c3c0d1100a44ef839c14477262cebf4d
ssdeep: 3072:j6fCkz/ObqPoHs4jETVh1f8NBTbujbmal/stmEc++lM0Jwn0zw6:GfqhlYJ4rbE3/stmV++n
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Cryrar.hef also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 005324731 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Heur.Ransom.ACCDFISA.2
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaRansom:Win32/Cryrar.df8d46b2
K7GWTrojan ( 005324731 )
Cybereasonmalicious.8b130c
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.ACCDFISA.A
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Cryrar.hef
BitDefenderGen:Heur.Ransom.ACCDFISA.2
NANO-AntivirusTrojan.Win32.Filecoder.ffxdgr
MicroWorld-eScanGen:Heur.Ransom.ACCDFISA.2
TencentWin32.Trojan.Cryrar.Alsy
Ad-AwareGen:Heur.Ransom.ACCDFISA.2
SophosMal/Generic-R + Troj/Ransom-EZP
ComodoMalware@#24phh1gv6yms8
BitDefenderThetaGen:NN.ZexaF.34678.oqW@aCGUv1c
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom.Win32.ACCDFISA.SMTH
McAfee-GW-EditionBehavesLike.Win32.Dropper.dh
FireEyeGeneric.mg.7db80598b130c346
EmsisoftGen:Heur.Ransom.ACCDFISA.2 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Cryrar.cw
AviraHEUR/AGEN.1112622
MicrosoftTrojan:Win32/Dynamer!rfn
GDataWin32.Trojan-Ransom.Accdfisa.A
AhnLab-V3Malware/Win32.Generic.C2638464
McAfeeTrojan-FONN!7DB80598B130
MAXmalware (ai score=100)
VBA32TrojanRansom.Cryrar
MalwarebytesMalware.AI.2919163905
PandaTrj/CI.A
TrendMicro-HouseCallRansom.Win32.ACCDFISA.SMTH
RisingRansom.Cryrar!8.4549 (CLOUD)
YandexTrojan.GenAsa!6C4m/wLshLM
IkarusTrojan-Ransom.Accdfisa
FortinetW32/Injector.ACCDFISA!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HwUBEpsA

How to remove Trojan-Ransom.Win32.Cryrar.hef?

Trojan-Ransom.Win32.Cryrar.hef removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment