Ransom Trojan

Trojan-Ransom.Win32.Gen.kwu removal instruction

Malware Removal

The Trojan-Ransom.Win32.Gen.kwu is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Gen.kwu virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan-Ransom.Win32.Gen.kwu?


File Info:

crc32: 9F82204E
md5: 03322f5e21a072a6e17a031c69bc59f0
name: 03322F5E21A072A6E17A031C69BC59F0.mlw
sha1: aed241fec9f0f750fcfdcc1339e7d33c5c094e37
sha256: 32c2f3e6fc75d9002af203236b5a1e08bbb400d00045c5d4e15ecf940de3658f
sha512: 880eb5c832ff187a28ee233fea32f7a142a1e9f4773f292c7cf37c0c96c16cab6a874c1df0a54c2cd0e6d4809f36eaf8a9d60834e73686b88150c7b7555a1de6
ssdeep: 1536:I4+p9aHgLP3HHEJaJYjtNm6JUSKHfudz9z4os:8EUJYjr3K/Q5b
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

dsgf24gse: f23rfd32rf1gsdgsr32423.exe
FileVersion: 18,9,12,13
CompanyName: f1frewdsffwefwfwer,fwewrfwe,213eefr2dsfqfsdf
Translation: 0x040b 0x04e4

Trojan-Ransom.Win32.Gen.kwu also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0055dd191 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader23.1057
CynetMalicious (score: 100)
ALYacGen:Heur.Mint.Dreidel.eu0@xac!8pai
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.8237
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaRansom:Win32/HydraCrypt.2e1167a0
K7GWTrojan ( 0055dd191 )
Cybereasonmalicious.e21a07
ESET-NOD32Win32/Filecoder.HydraCrypt.C
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Gen.kwu
BitDefenderGen:Heur.Mint.Dreidel.eu0@xac!8pai
NANO-AntivirusTrojan.Win32.AD.ehnapq
ViRobotTrojan.Win32.Hydra.79872
MicroWorld-eScanGen:Heur.Mint.Dreidel.eu0@xac!8pai
TencentMalware.Win32.Gencirc.114b3f04
Ad-AwareGen:Heur.Mint.Dreidel.eu0@xac!8pai
SophosMal/Generic-S
ComodoMalware@#33iyghax85ytc
BitDefenderThetaGen:NN.ZexaF.34126.eu0@aac!8pai
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.PUPXFM.lh
FireEyeGeneric.mg.03322f5e21a072a6
EmsisoftGen:Heur.Mint.Dreidel.eu0@xac!8pai (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Blocker.fkv
AviraTR/FileCoder.sxyui
eGambitUnsafe.AI_Score_98%
Antiy-AVLTrojan/Generic.ASMalwS.1C3B9F0
MicrosoftTrojan:Win32/Occamy.C
ZoneAlarmTrojan-Ransom.Win32.Gen.kwu
GDataGen:Heur.Mint.Dreidel.eu0@xac!8pai
TACHYONRansom/W32.Agent.79872
McAfeeGenericRXNS-OE!03322F5E21A0
MAXmalware (ai score=100)
VBA32BScope.Trojan.Encoder
PandaTrj/GdSda.A
RisingTrojan.Generic@ML.100 (RDML:ZbbS8Fa4S2FO9vFrDKpoiw)
YandexTrojan.GenAsa!o5+bDf2qL88
IkarusTrojan-Ransom.CryptoMix
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Generic.AP.265D68!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.Gen.kwu?

Trojan-Ransom.Win32.Gen.kwu removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment