Ransom Trojan

Trojan-Ransom.Win32.Gen.abwa removal guide

Malware Removal

The Trojan-Ransom.Win32.Gen.abwa is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Gen.abwa virus can do?

  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Russian
  • Uses Windows utilities for basic functionality
  • Exhibits possible ransomware file modification behavior
  • Network activity detected but not expressed in API logs
  • Uses suspicious command line tools or Windows utilities

How to determine Trojan-Ransom.Win32.Gen.abwa?


File Info:

crc32: F414C326
md5: 7c5edb881fdf8f0f4d0b1e64896ddec6
name: 7C5EDB881FDF8F0F4D0B1E64896DDEC6.mlw
sha1: 6f29f39c9dfae50a3d422eaf03c32f20083d0614
sha256: dac43d7105dee234068d2ec6bde729f17fe8b80cdbcdb207cc0d74f0d28de826
sha512: c31b0721de7af6effbafd28519a4b9750f2ea7f2209f42b7fe1aa389c202a8a3dc7c96295728a19c58069feeed749e3ac962b9c5dcb4a67cc90b7b61733d1c12
ssdeep: 6144:psCwu+mWhJifvtNP/7YXSLB80PFEghEhR3pGJjn9IHGl6:exmIJQvPkitLwR3pGZqHd
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Gen.abwa also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Generic.4!c
DrWebTrojan.KillProc2.16508
CynetMalicious (score: 100)
CAT-QuickHealTrojan.GenericPMF.S17672681
CylanceUnsafe
SangforTrojan.Win32.Save.a
AlibabaRansom:Win32/Disabler.c8c53d7b
CyrenW32/S-e8958863!Eldorado
SymantecTrojan.Gen.2
ZonerTrojan.Win32.85523
APEXMalicious
AvastOther:Malware-gen [Trj]
KasperskyTrojan-Ransom.Win32.Gen.abwa
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.Generic.fh
FireEyeGeneric.mg.7c5edb881fdf8f0f
SentinelOneStatic AI – Malicious SFX
Antiy-AVLTrojan/Generic.ASMalwS.2B9EB3B
MicrosoftTrojan:Win32/Tiggre!rfn
GDataWin32.Trojan.PSE.DR6CWW
McAfeeArtemis!7C5EDB881FDF
TrendMicro-HouseCallTROJ_GEN.R002H07HN21
RisingTrojan.Generic@ML.93 (RDML:GrOVAZI4iJjhBjF47ELwBA)
IkarusTrojan.BAT.Disabler
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Malicious_Behavior.VEX
AVGOther:Malware-gen [Trj]
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.Gen.abwa?

Trojan-Ransom.Win32.Gen.abwa removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment