Ransom Trojan

Trojan-Ransom.Win32.MyxaH information

Malware Removal

The Trojan-Ransom.Win32.MyxaH is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.MyxaH virus can do?

  • Executable code extraction
  • Compression (or decompression)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • A process created a hidden window
  • Sniffs keystrokes
  • Tries to unhook or modify Windows functions monitored by Cuckoo
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

marianavilla3008m.duckdns.org

How to determine Trojan-Ransom.Win32.MyxaH?


File Info:

crc32: 11C63843
md5: 20e614b4be28c7345e5ee0b6dd01244c
name: upload_file
sha1: 7e44a76b4690110e14fc939f88086f73293f9dd1
sha256: 213eecc6c8dcf62e5c6e49d8e9b66f99940a7ad4d20d7a5b228848838b66f45f
sha512: 0a0744e58b9b777aa6631e8c125bccdba79ff14cf916cd8603b6568a48ee438943954203794be145e644a5174ffc88cd0efbfca4badd90a9aeaa51ed35cb19bc
ssdeep: 6144:uHfYbOCHHWkcBVGF/cDOzI1mZ1xehEbwvNCQh+cQWqrth69FdbiLszRwwkKV5h:ulCHEGFkCLxemxQw6qhgbUszRwEF
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Trojan-Ransom.Win32.MyxaH also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 85)
McAfeeArtemis!20E614B4BE28
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojan:Win32/Injector.7bae330b
K7GWTrojan ( 0056c5aa1 )
K7AntiVirusTrojan ( 0056c5aa1 )
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Injector.EMZC
APEXMalicious
KasperskyHEUR:Trojan-Ransom.Win32.MyxaH.gen
Comodo.UnclassifiedMalware@0
Invinceaheuristic
FireEyeGeneric.mg.20e614b4be28c734
SophosMal/Generic-S
IkarusWin32.Outbreak
JiangminTrojanDownloader.Generic.bful
AviraTR/Injector.rrgbs
MicrosoftTrojan:Win32/Wacatac.C!ml
ZoneAlarmHEUR:Trojan-Ransom.Win32.MyxaH.gen
GDataWin32.Packed.Kryptik.FV6I4P
AhnLab-V3Malware/Win32.RL_Generic.R339226
MalwarebytesTrojan.Injector
TencentWin32.Trojan.Myxah.Hrfi
SentinelOneDFI – Suspicious PE
WebrootW32.Trojan.Gen
AVGFileRepMalware
Cybereasonmalicious.b46901

How to remove Trojan-Ransom.Win32.MyxaH?

Trojan-Ransom.Win32.MyxaH removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment