Ransom Trojan

Trojan-Ransom.Win32.Scatter.ru information

Malware Removal

The Trojan-Ransom.Win32.Scatter.ru is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Scatter.ru virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan-Ransom.Win32.Scatter.ru?


File Info:

crc32: 23BBE2CD
md5: d1e06f5a999534212cf2c350d4906f54
name: D1E06F5A999534212CF2C350D4906F54.mlw
sha1: 8c75a0cd1e2bf3f3b4075b5efd6581005474748e
sha256: bf2189167b38e55d69e1b9ef9ef499fb062339ce35134248008f6627e6f174bd
sha512: ede5e939b2319a41d7ed5b601680d45a673e1c8689d676c4be76b34491b4d93fd5712142bf4686be620b45d213270a6af332adb6de3f483c9fe373dfc65479fe
ssdeep: 384:t+QbnrVhpNCqi8q4W+T0Qs0xUtz2V90nmvT6Ai8fl:t+knfNib44QFV9hT6s
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2017
Assembly Version: 1.0.0.0
InternalName: smcct.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: smcct
ProductVersion: 1.0.0.0
FileDescription: smcct
OriginalFilename: smcct.exe

Trojan-Ransom.Win32.Scatter.ru also known as:

K7AntiVirusRiskware ( 0040eff71 )
DrWebTrojan.Encoder.10199
CynetMalicious (score: 99)
ALYacTrojan.Ransom.Unlock92
CylanceUnsafe
ZillyaTrojan.Scatter.Win32.120
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaRansom:Win32/Scatter.d8ecda87
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.a99953
SymantecInfostealer.Limitail
ESET-NOD32a variant of MSIL/Filecoder.AC
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan-Ransom.Win32.Scatter.ru
BitDefenderGen:Variant.Ursu.724491
NANO-AntivirusTrojan.Win32.Scatter.elcjxq
MicroWorld-eScanGen:Variant.Ursu.724491
TencentWin32.Trojan.Raas.Auto
Ad-AwareGen:Variant.Ursu.724491
SophosMal/Generic-R + Mal/CrypZxas-A
ComodoMalware@#1v503z9cjzfx6
BitDefenderThetaGen:NN.ZemsilF.34690.bm0@a8IwtOn
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_CRYPZXAS.F117B1
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.d1e06f5a99953421
EmsisoftTrojan-Ransom.Unlock92 (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Scatter.dv
WebrootW32.Ransom.Gen
AviraTR/Crypt.XPACK.Gen7
eGambitGeneric.Malware
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/FileCryptor
AegisLabTrojan.Win32.Scatter.j!c
GDataMSIL.Trojan-Ransom.Unlock92.E
McAfeeArtemis!D1E06F5A9995
MAXmalware (ai score=100)
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_CRYPZXAS.F117B1
RisingRansom.FileCryptor!8.1A7 (CLOUD)
YandexTrojan.Scatter!oAaHJN+pRCI
IkarusTrojan.MSIL.Filecoder
FortinetMSIL/Filecoder.AC!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.Scatter.ru?

Trojan-Ransom.Win32.Scatter.ru removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment