Trojan-Ransom.Win32.Snocry.csc removal instruction

Malware Removal

The Trojan-Ransom.Win32.Snocry.csc is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware - Review 2020

GridinSoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend to use GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the TRIAL period.
6-day free trial available.

What Trojan-Ransom.Win32.Snocry.csc virus can do?

  • Expresses interest in specific running processes
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Performs some HTTP requests
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Writes a potential ransom message to disk
  • Creates a hidden or system file
  • Attempts to modify proxy settings
  • Creates a copy of itself

How to determine Trojan-Ransom.Win32.Snocry.csc?


File Info:

crc32: E22E961D
md5: ec49192d51ea4d2afc04f29bc914fd08
name: EC49192D51EA4D2AFC04F29BC914FD08.mlw
sha1: c351bb24e896e2c44cc4e7d4fb4e735cc8a8ea68
sha256: c31dc1d418847344695d3fd2b9cf335f8d7a2fa164f007ba1472009328624a9f
sha512: e6eb144237daa4ee67d50c8ecce0340c0719da9a929d5743ab97691c18f4c74f9b7949749d481580d1db8c306c56398c44b189d141c10fd22d05428486d58725
ssdeep: 12288:/CdOy3vVrKxR5CXbNjAOxK/j2n+4YG/6c1mFFja3mXgcjfRlgsUBgaCl3ZuQ:/Cdxte/80jYLT3U1jfsWaM3ZuQ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

Trojan-Ransom.Win32.Snocry.csc also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!e
DrWebTrojan.PWS.Siggen1.48116
ClamAVWin.Ransomware.Philadelphia-7057772-0
CAT-QuickHealTrojan.AutoIt.Dropper.ZZ
ALYacZum.Ransom.Philadelphia.1
CylanceUnsafe
SangforRansom.Win32.Snocry.csc
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaTrojan:Win32/Starter.ali1001008
K7GWTrojan ( 00502b0f1 )
K7AntiVirusTrojan ( 00502b0f1 )
SymantecTrojan.Gen.6
ESET-NOD32Win32/Filecoder.Philadelphia.E
APEXMalicious
AvastFileRepMalware
CynetMalicious (score: 100)
KasperskyTrojan-Ransom.Win32.Snocry.csc
BitDefenderAIT:Trojan.Nymeria.1036
NANO-AntivirusTrojan.Win32.Agent.erxmsy
MicroWorld-eScanAIT:Trojan.Nymeria.1036
TencentWin32.Trojan.Snocry.Alin
Ad-AwareAIT:Trojan.Nymeria.1036
SophosMal/Generic-S + Troj/PhilRns-A
ComodoMalware@#354ze2cewt4v7
BitDefenderThetaAI:Packer.F5FF277D17
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_STAMPADO.SMAUIT
McAfee-GW-EditionBehavesLike.Win32.TrojanAitInject.ch
FireEyeAIT:Trojan.Nymeria.1036
EmsisoftAIT:Trojan.Nymeria.1036 (B)
AviraHEUR/AGEN.1100102
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/FileCryptor
ArcabitAIT:Trojan.Nymeria.D40C
ZoneAlarmTrojan-Ransom.Win32.Snocry.csc
GDataZum.Ransom.Philadelphia.1
McAfeeGeneric.dte
MAXmalware (ai score=100)
VBA32TrojanRansom.Snocry
MalwarebytesRansom.Philadelphia
PandaTrj/CI.A
TrendMicro-HouseCallRansom_STAMPADO.SMAUIT
RisingRansom.Agent/Autoit!1.B5E9 (CLASSIC)
IkarusWorm.Win32.Filecoder
MaxSecureTrojan.Malware.300983.susgen
FortinetAutoIt/Philadelphia.E!tr
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Philadelphia.HgIASOQA

How to remove Trojan-Ransom.Win32.Snocry.csc?

Trojan-Ransom.Win32.Snocry.csc removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

Leave a Comment