Ransom Trojan

Trojan-Ransom.Win32.Hexzone.jaz malicious file

Malware Removal

The Trojan-Ransom.Win32.Hexzone.jaz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Hexzone.jaz virus can do?

  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan-Ransom.Win32.Hexzone.jaz?


File Info:

name: 35D564688FB406E4F5DF.mlw
path: /opt/CAPEv2/storage/binaries/66afcb8f70d9421094ce7d6c768610fed965caeb846b4d6702858274b13ba5b4
crc32: C08FDC7D
md5: 35d564688fb406e4f5dfb8f1643eed40
sha1: 1eb19d4a9cdfb0b6add738ad492ff032ab1c2c0a
sha256: 66afcb8f70d9421094ce7d6c768610fed965caeb846b4d6702858274b13ba5b4
sha512: 2590b02932f2becb9f460f43b0d7505e3b90f5727d40114bb761cea16d31420f6d42539301b314d19e0246f0f003264c99df2ae89c1743a7d263e442e4975a27
ssdeep: 24576:sPVrCe6Ap7jD4jxQgfNW5QOsDLGdcUAivT+C:sj/rEDLGTdT+C
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11A157E31B2929433D1731A388C67E3E9593ABF102D38A84B3BE91F4C5F3965239652D7
sha3_384: ddf33110e66fd10b98f734be1f4e6417f477ead88eb268d8f2e6f6719ffdb0e42c4990c59f5922ff8d33bdc12c027f2d
ep_bytes: 558bec83c4f0b8b0e74b00e8e875f4ff
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Hexzone.jaz also known as:

BkavW32.AIDetect.malware1
FireEyeGeneric.mg.35d564688fb406e4
McAfeeArtemis!35D564688FB4
SangforTrojan.Win32.Save.a
AlibabaRansom:Win32/Hexzone.3cae411c
SymantecSpyware.Keylogger
APEXMalicious
KasperskyTrojan-Ransom.Win32.Hexzone.jaz
SophosGeneric ML PUA (PUA)
ComodoMalware@#vije8myj5c6w
ZillyaTrojan.Hexzone.Win32.2013
TrendMicroTROJ_DELF.WJT
McAfee-GW-EditionBehavesLike.Win32.Dropper.ch
JiangminTrojan/Hexzone.apr
Antiy-AVLTrojan/Generic.ASMalwS.29584D
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftBackdoor:Win32/Bafruz.O
CynetMalicious (score: 100)
VBA32TScope.Trojan.Delf
MAXmalware (ai score=100)
TrendMicro-HouseCallTROJ_DELF.WJT
TencentTrojan.Win32.BitCoinMiner.la
SentinelOneStatic AI – Suspicious PE
eGambitUnsafe.AI_Score_100%
FortinetW32/Hexzone.JAZ!tr
Cybereasonmalicious.a9cdfb
PandaGeneric Malware

How to remove Trojan-Ransom.Win32.Hexzone.jaz?

Trojan-Ransom.Win32.Hexzone.jaz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment