Ransom Trojan

Trojan-Ransom.Win32.GandCrypt.bzs information

Malware Removal

The Trojan-Ransom.Win32.GandCrypt.bzs is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.GandCrypt.bzs virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan-Ransom.Win32.GandCrypt.bzs?


File Info:

crc32: 6501077D
md5: ba40c8097b71d8965cc1b09b1d36a88f
name: BA40C8097B71D8965CC1B09B1D36A88F.mlw
sha1: bcb9219a4db3be5fb3cf4231d9c2421840c56872
sha256: a862e86dfb944a357aa4c87060cabc96cbb034b415e22a6682244869ebdad485
sha512: 9aeeba08dbbfdc0fa5f74a5f197182ea75834c90e487f49617d8e345845f4cc8b094d68e84273c9c48df75d282f07ed535a6f564578e178c5490a60020de07ec
ssdeep: 3072:Mfb87m5n5BNb235I07dRALatT5FWw6FsqvsLd993gmaEL572cN:Ibem103m07dRWW5wwsnkDjaEV2w
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

ProductVersion: 10.1.10.11
Translation: 0x0848 0x0e97

Trojan-Ransom.Win32.GandCrypt.bzs also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.44869
FireEyeGeneric.mg.ba40c8097b71d896
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacTrojan.GenericKDZ.44869
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.GandCrypt.j!c
SangforWin.Packed.Gandcrab-6552923-4
K7AntiVirusTrojan ( 005261921 )
BitDefenderTrojan.GenericKDZ.44869
K7GWTrojan ( 005261921 )
Cybereasonmalicious.97b71d
BitDefenderThetaGen:NN.ZexaF.34590.nu1@aypsMIjO
CyrenW32/S-d30c8921!Eldorado
SymantecPacked.Generic.525
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
ClamAVWin.Packed.Gandcrab-6552923-4
KasperskyTrojan-Ransom.Win32.GandCrypt.bzs
NANO-AntivirusTrojan.Win32.Encoder.fehhuu
ViRobotTrojan.Win32.GandCrab.Gen.A
TencentMalware.Win32.Gencirc.10b6824d
Ad-AwareTrojan.GenericKDZ.44869
SophosMal/Generic-R + Mal/Agent-AUL
ComodoTrojWare.Win32.Chapak.FS@7prmd9
F-SecureTrojan.TR/FileCoder.EU
DrWebTrojan.Encoder.24384
ZillyaTrojan.GenericKDZ.Win32.2236
TrendMicroRansom_GANDCRAB.SMALY-3
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
EmsisoftTrojan.GenericKDZ.44869 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Chapak.kr
MaxSecureRansomeware.CRAB.gen
AviraTR/FileCoder.EU
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.SGeneric
MicrosoftRansom:Win32/Gandcrab.SF!MTB
ArcabitTrojan.Generic.DAF45
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
ZoneAlarmTrojan-Ransom.Win32.GandCrypt.bzs
GDataTrojan.GenericKDZ.44869
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Gandcrab.Exp
Acronissuspicious
McAfeeGenericRXFY-CI!BA40C8097B71
TACHYONRansom/W32.GandCrab
VBA32BScope.TrojanPSW.Stealer
MalwarebytesTrojan.MalPack
PandaTrj/Genetic.gen
ZonerTrojan.Win32.69125
ESET-NOD32Win32/Filecoder.GandCrab.B
TrendMicro-HouseCallRansom_GANDCRAB.SMALY-3
RisingTrojan.Kryptik!1.C6AB (RDMK:cmRtazrBRbSgoszFf+2XTYMq8ZbY)
YandexTrojan.GenAsa!+dmKb5kqvsw
IkarusTrojan-Ransom.GandCrab
eGambitUnsafe.AI_Score_81%
FortinetW32/GenKryptik.CNAR!tr
AVGWin32:CrypterX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Trojan.244

How to remove Trojan-Ransom.Win32.GandCrypt.bzs?

Trojan-Ransom.Win32.GandCrypt.bzs removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment