Ransom Trojan

Trojan-Ransom.Win32.PornoAsset.dfqb removal guide

Malware Removal

The Trojan-Ransom.Win32.PornoAsset.dfqb is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.PornoAsset.dfqb virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Installs itself for autorun at Windows startup
  • Anomalous binary characteristics

How to determine Trojan-Ransom.Win32.PornoAsset.dfqb?


File Info:

crc32: 43461737
md5: 78d09fbc073d1fd1add36198b361cbc3
name: 78D09FBC073D1FD1ADD36198B361CBC3.mlw
sha1: 4a19fffd9c0b5257a78010614c14ede838173737
sha256: 7fd3a81fef34ce0548ba12805d73d48b55a4d528933480888e592c18c1e57915
sha512: dfd4d9c215a1c68f596b0766a8e06f8219f734306f2ebe86c157fb55d71ba7319135d961fc8ab3a14f5bc535d1ee42bd334b5363c619737727eaa6ac41438be6
ssdeep: 768:UBDJEqOFkG8H8ZH8eJW4pxemPtLq8Az2kfvvlnEtKwvuEYhRwV:IVEZz8cHW4pxzPtL1/kfvvlnEtKwvuER
type: PE32 executable (GUI) Intel 80386, for MS Windows, PECompact2 compressed

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: ismail kozan
InternalName: pine
FileVersion: 2.04.0002
CompanyName: HALKBANK
Comments: Intelligent Password Management client w10
ProductName: iPMClient
ProductVersion: 2.04.0002
OriginalFilename: pine.exe

Trojan-Ransom.Win32.PornoAsset.dfqb also known as:

BkavW32.AIDetect.malware1
K7AntiVirusRiskware ( 0040eff71 )
DrWebBACKDOOR.Trojan
CynetMalicious (score: 99)
ALYacTrojan.GenericKD.32093564
CylanceUnsafe
ZillyaTrojan.PornoAsset.Win32.23720
AlibabaRansom:Win32/PornoAsset.a5e74fc0
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.c073d1
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.PornoAsset.dfqb
BitDefenderTrojan.GenericKD.32093564
NANO-AntivirusTrojan.Win32.PornoAsset.fseluy
MicroWorld-eScanTrojan.GenericKD.32093564
TencentWin32.Trojan.Pornoasset.Akpc
Ad-AwareTrojan.GenericKD.32093564
SophosMal/Generic-R + Mal/VB-C
F-SecureTrojan.TR/VB.Downloader.Gen
BitDefenderThetaGen:NN.ZevbaCO.34690.ci1faG9uOgii
VIPREBackdoor.Win32.VB.HMR!cobra (v)
FireEyeTrojan.GenericKD.32093564
EmsisoftTrojan.GenericKD.32093564 (B)
JiangminTrojan.PornoAsset.fol
AviraTR/VB.Downloader.Gen
MicrosoftTrojan:Win32/Tiggre!rfn
ArcabitTrojan.Generic.D1E9B57C
AegisLabTrojan.Win32.PornoAsset.j!c
ZoneAlarmTrojan-Ransom.Win32.PornoAsset.dfqb
GDataTrojan.GenericKD.32093564
AhnLab-V3Dropper/Win32.Daws.C2308686
VBA32BScope.TrojanDropper.Daws
MalwarebytesMalware.Heuristic.1001
PandaTrj/GdSda.A
RisingRansom.PornoAsset!8.6AA (CLOUD)
IkarusTrojan.VB.Downloader
FortinetW32/PornoAsset.C!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.PornoAsset.dfqb?

Trojan-Ransom.Win32.PornoAsset.dfqb removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment