Ransom Trojan

Trojan-Ransom.Win32.Gen.jai removal tips

Malware Removal

The Trojan-Ransom.Win32.Gen.jai is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Gen.jai virus can do?

  • Reads data out of its own binary image
  • Attempts to modify desktop wallpaper
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan-Ransom.Win32.Gen.jai?


File Info:

crc32: 2A5458A6
md5: cc2d065aa95ca99d530e9c55a8cf8553
name: CC2D065AA95CA99D530E9C55A8CF8553.mlw
sha1: ccda3e231e257e3cd9247d62094a62b5fc73ec37
sha256: 9c7f6ac6ab7325cb07b5a3a63b7bc0cfa00b13febc1a5e9a99010e025aec3965
sha512: d3bc8319681cc8d189f1847b441330575eaef5e6e64a812b55052d7b0955e2716502bf2d006bc82adc307b0b00a8f3635580e49e3a0170ec342caf27d6abed0e
ssdeep: 12288:ghkDgouVA2nxKkorvdRgQriDwOIxmxiZnYQE7PJcE4a73DfgCkG:oRmJkcoQricOIQxiZY1iaD0C/
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

CompiledScript: AutoIt v3 Script: 3, 3, 8, 1
FileVersion: 3, 3, 8, 1
FileDescription:
Translation: 0x0809 0x04b0

Trojan-Ransom.Win32.Gen.jai also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0055e3ef1 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.24597
CynetMalicious (score: 99)
CAT-QuickHealProgram.Wacapew
ALYacTrojan.GenericKD.45241846
CylanceUnsafe
ZillyaTrojan.Gen.Win32.1728
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 0055e3ef1 )
Cybereasonmalicious.aa95ca
CyrenW32/Autoit.XNSP-2917
SymantecRansom.Cryptolocker
ESET-NOD32a variant of Win32/Filecoder.Crypt888.B
APEXMalicious
AvastAutoIt:Ransom-L [Trj]
ClamAVWin.Malware.Autoit-6992337-0
KasperskyTrojan-Ransom.Win32.Gen.jai
BitDefenderTrojan.GenericKD.45241846
NANO-AntivirusTrojan.Win32.Encoder.fcvsek
MicroWorld-eScanTrojan.GenericKD.45241846
TencentWin32.Trojan.Gen.Syrt
Ad-AwareTrojan.GenericKD.45241846
SophosMal/Generic-S
ComodoMalware@#3m6b1f3erhedx
BitDefenderThetaAI:Packer.E19D7A3317
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom.AutoIt.CRYPTEIGHT.SMTH
McAfee-GW-EditionBehavesLike.Win32.AutoitDropper.bh
FireEyeGeneric.mg.cc2d065aa95ca99d
EmsisoftTrojan.GenericKD.45241846 (B)
JiangminTrojan.Encoder.d
AviraHEUR/AGEN.1110296
MicrosoftRansom:Win32/Pocrimcrypt.A
GDataTrojan.GenericKD.45241846
AhnLab-V3Trojan/Win32.FileCoder.R291305
McAfeeGeneric.duj
MAXmalware (ai score=99)
VBA32Trojan.Encoder
MalwarebytesRansom.Microcop
PandaTrj/CI.A
TrendMicro-HouseCallRansom.AutoIt.CRYPTEIGHT.SMTH
RisingRansom.Crypt888/Autoit!1.C27B (CLASSIC)
IkarusTrojan-Ransom.Crypt888
MaxSecureTrojan.Autoit.AZA
FortinetW32/Filecoder.DYB!tr
AVGAutoIt:Ransom-L [Trj]
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.Gen.jai?

Trojan-Ransom.Win32.Gen.jai removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment