Ransom Trojan

How to remove “Trojan-Ransom.Win32.Gen.gej”?

Malware Removal

The Trojan-Ransom.Win32.Gen.gej is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Gen.gej virus can do?

  • Attempts to delete volume shadow copies
  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Writes a potential ransom message to disk
  • Network activity detected but not expressed in API logs
  • Likely virus infection of existing system binary
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan-Ransom.Win32.Gen.gej?


File Info:

crc32: 8648AE34
md5: 1ef057fd992bdf18d1465063cc16edcf
name: 1EF057FD992BDF18D1465063CC16EDCF.mlw
sha1: 9a771bac697ea3671be0fa5d58f804dea3585dc5
sha256: 48d7c0619c555ef79f73385605aee84046f989e885532d5c53ed817a3ade2998
sha512: 88f50b7865ca4873f0c3a62b776177085136221de26a4f4fd91a65d968c13a4c6b211fb4156ece2f9aac897f7b1024825974e819083eb43678fa1c7ff5cf30db
ssdeep: 12288:KpceBv++OeO+OeNhBBhhBBV3gArsgGMsuLyqCqHo+xSmd1o+SIshlkHAGfmsqx:Kpcel5gcsgN9I+8aIyAGfbq
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Gen.gej also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0051a7af1 )
LionicTrojan.Win32.Gen.tpss
DrWebTrojan.Encoder.14988
ALYacTrojan.Ransom.Blind
CylanceUnsafe
ZillyaTrojan.Gen.Win32.1710
SangforRansom.Win32.Gen.gej
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaRansom:Win32/generic.ali2000010
K7GWTrojan ( 0051a7af1 )
Cybereasonmalicious.d992bd
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.NNZ
APEXMalicious
AvastFileRepMalware
CynetMalicious (score: 100)
KasperskyTrojan-Ransom.Win32.Gen.gej
BitDefenderGen:Heur.Ransom.REntS.Gen.1
NANO-AntivirusTrojan.Win32.DelShad.fohuae
ViRobotTrojan.Win32.GlobeImposter.639488
MicroWorld-eScanGen:Heur.Ransom.REntS.Gen.1
TencentMalware.Win32.Gencirc.114928b3
Ad-AwareGen:Heur.Ransom.REntS.Gen.1
SophosMal/Generic-R + Troj/Blind-A
ComodoMalware@#rlirm75ie8ga
BitDefenderThetaGen:NN.ZexaF.34796.NuW@aCvBc4ei
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_FRS.0NA103C320
McAfee-GW-EditionBehavesLike.Win32.PUPXBV.jh
FireEyeGeneric.mg.1ef057fd992bdf18
EmsisoftGen:Heur.Ransom.REntS.Gen.1 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Gen.oz
WebrootW32.Gen.gej
AviraTR/AD.RansomHeur.ngene
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/Genasom
GDataGen:Heur.Ransom.REntS.Gen.1
TACHYONRansom/W32.Agent.639488
AhnLab-V3Trojan/Win32.Genasom.C2279637
McAfeeRansom-Blind!1EF057FD992B
MAXmalware (ai score=100)
VBA32Trojan-Ransom.Gen
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_FRS.0NA103C320
RisingTrojan.Filecode!1.B393 (CLASSIC)
YandexTrojan.GenAsa!kMQMbXKiOHw
IkarusTrojan-Ransom.FileCrypter
MaxSecureTrojan.Malware.74291287.susgen
FortinetW32/Filecoder.NNZ!tr
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Genasom.HgAASREA

How to remove Trojan-Ransom.Win32.Gen.gej?

Trojan-Ransom.Win32.Gen.gej removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment