Ransom Trojan

What is “Trojan-Ransom.Win32.Sodin.afj”?

Malware Removal

The Trojan-Ransom.Win32.Sodin.afj is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Sodin.afj virus can do?

  • Attempts to stop active services
  • Crashed cuckoomon during analysis. Report this error to the Github repo.
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs

How to determine Trojan-Ransom.Win32.Sodin.afj?


File Info:

crc32: 39121D81
md5: 7111faa06f6a21e0ea9257bbf316f38a
name: 7111FAA06F6A21E0EA9257BBF316F38A.mlw
sha1: 3708066334fa05ad5048a4567361686e00c9a5dc
sha256: 5467fe3f38ccf0c56c1aba7cbbc56109b747f7a53c333a3f5a1cfe6094e1fa2b
sha512: 50e08f0a3f8c47ec0e4a120a4927a0adfbf7592f42ee5a50a55f19b76b74a38edd3ddfb71c73004bff4c3db986008d9290134db07a838fd8a9345291cea559f3
ssdeep: 1536:J8A4krBJLarHZZd/M4PI8iwplAXpzK88ICS4Aer9DBTIEt5NGH35pFZmY+:+/LPrlAZZEL7tXE35pe
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Sodin.afj also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00577e3b1 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.33717
CynetMalicious (score: 100)
CAT-QuickHealTrojanransom.Sodin
ALYacTrojan.Ransom.Sodinokibi
CylanceUnsafe
ZillyaTrojan.Sodin.Win32.205
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/generic.ali2000010
K7GWTrojan ( 00577e3b1 )
Cybereasonmalicious.06f6a2
CyrenW32/Kryptik.AKW.gen!Eldorado
SymantecRansom.Sodinokibi
ESET-NOD32a variant of Win32/Filecoder.Sodinokibi.I
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Sodin.afj
BitDefenderGen:Variant.Razy.525651
NANO-AntivirusVirus.Win32.Gen.ccmw
MicroWorld-eScanGen:Variant.Razy.525651
TencentMalware.Win32.Gencirc.10ce402a
Ad-AwareGen:Variant.Razy.525651
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34688.huW@aqCibHi
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom.Win32.SODINOKIB.SMTH
McAfee-GW-EditionBehavesLike.Win32.VirRansom.ch
FireEyeGeneric.mg.7111faa06f6a21e0
EmsisoftGen:Variant.Razy.525651 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Ransom.Gen
AviraTR/Crypt.XPACK.Gen
MicrosoftRansom:Win32/Revil.A
GridinsoftRansom.Win32.Ransom.oa!s1
ArcabitTrojan.Razy.D80553
AegisLabTrojan.Win32.Sodin.trN3
ZoneAlarmTrojan-Ransom.Win32.Sodin.afj
GDataGen:Variant.Razy.525651
TACHYONRansom/W32.Sodinokibi.122880
AhnLab-V3Trojan/Win.Ransom.R372521
Acronissuspicious
McAfeeGenericRXAA-AA!7111FAA06F6A
MAXmalware (ai score=83)
VBA32BScope.Trojan.DelShad
MalwarebytesSodinokibi.Ransom.Encrypt.DDS
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom.Win32.SODINOKIB.SMTH
RisingRansom.Sodinokibi!1.D473 (CLOUD)
YandexTrojan.Sodin!u2f+wBNAFRs
IkarusTrojan-Ransom.Sodinokibi
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Sodinokibi.F4FF858F!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.Sodin.afj?

Trojan-Ransom.Win32.Sodin.afj removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment