Ransom Trojan

Trojan-Ransom.Win32.GenericCryptor.jfr information

Malware Removal

The Trojan-Ransom.Win32.GenericCryptor.jfr is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.GenericCryptor.jfr virus can do?

  • Executable code extraction
  • Compression (or decompression)
  • Enumerates user accounts on the system
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Attempts to modify desktop wallpaper
  • Exhibits behavior characteristic of Cerber ransomware
  • Attempts to execute a binary from a dead or sinkholed URL
  • Creates a hidden or system file
  • Attempts to modify proxy settings
  • Attempts to access Bitcoin/ALTCoin wallets
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Trojan-Ransom.Win32.GenericCryptor.jfr?


File Info:

crc32: C1847454
md5: cbb740490cb931adef3881d4f9a2e6aa
name: CBB740490CB931ADEF3881D4F9A2E6AA.mlw
sha1: 06c5e2c1b0b5158bc485d9a7f8888cad41b0e553
sha256: 973bfbbc8b4c95e1389e960c4b2ac781a750975ef17d56360032c52dea6012c0
sha512: ca1452223bc681ca58456af7ff7e6f5da458c577dc008bb200bfe968dd10a31d025949aeb077279e1713437a6098eb521071cf3f12aca81bc64e4c4daadab6dc
ssdeep: 6144:SGy4qM153SGzkUGDy6sQv9VSGQSG+oDMGltM8iB9Vk5SYz:S6qOSmkUTQVqSGQSaTk8k
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Trojan-Ransom.Win32.GenericCryptor.jfr also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 005035111 )
DrWebTrojan.Encoder.5994
CynetMalicious (score: 90)
ALYacTrojan.Ransom.Cerber
CylanceUnsafe
SangforTrojan.Win32.GenericCryptor.usrg
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Injector.aba65c4a
K7GWTrojan ( 005035111 )
Cybereasonmalicious.90cb93
SymantecRansom.Cerber
ESET-NOD32a variant of NSIS/Injector.SG
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan-Ransom.Win32.GenericCryptor.jfr
BitDefenderTrojan.GenericKD.4285379
NANO-AntivirusTrojan.Nsis.Zerber.elfehi
SUPERAntiSpywareRansom.Cerber/Variant
MicroWorld-eScanTrojan.GenericKD.4285379
TencentWin32.Trojan.Raas.Auto
Ad-AwareTrojan.GenericKD.4285379
SophosMal/Generic-R + Mal/Cerber-AA
ComodoMalware@#3pmtialub4l6j
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_GenericCryptor.R002C0OK420
McAfee-GW-EditionBehavesLike.Win32.ObfusRansom.dc
FireEyeGeneric.mg.cbb740490cb931ad
EmsisoftTrojan.GenericKD.4285379 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Nisloder.ii
AviraTR/Dropper.Gen
MicrosoftRansom:Win32/Cerber!rfn
ArcabitTrojan.Generic.D4163C3
AegisLabTrojan.Win32.Generic.4!c
GDataTrojan.GenericKD.4285379
AhnLab-V3Trojan/Win32.Cerber.R194240
McAfeeArtemis!CBB740490CB9
MAXmalware (ai score=100)
VBA32Trojan.Encoder
MalwarebytesMalware.AI.1602372018
PandaTrj/CI.A
TrendMicro-HouseCallRansom_GenericCryptor.R002C0OK420
IkarusTrojan.NSIS.Injector
FortinetW32/Injector.SH!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HyoDTUYA

How to remove Trojan-Ransom.Win32.GenericCryptor.jfr?

Trojan-Ransom.Win32.GenericCryptor.jfr removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment