Ransom Trojan

Should I remove “Trojan-Ransom.Win32.Xorist.ln”?

Malware Removal

The Trojan-Ransom.Win32.Xorist.ln is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Xorist.ln virus can do?

  • The executable is compressed using UPX
  • Mimics the file times of a Windows system file
  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Likely virus infection of existing system binary
  • Creates a copy of itself

How to determine Trojan-Ransom.Win32.Xorist.ln?


File Info:

crc32: 09C24CFD
md5: 599ed7612a580314df6b31718277e2c8
name: 599ED7612A580314DF6B31718277E2C8.mlw
sha1: db4e69f5c7af8b4f444c90b3d859f81b3797ef99
sha256: 5c276408e9be5011ca2962bfd1da36b137d730857cd911d85ac558d1407b8b91
sha512: ee8fe86d999ea0a1c9dc3404c40401c277c44b007d1a3cb6a9412dbbadd83dd7fb3110084623fb5493d8456c313757d8582eb93370246bb830ea035845a63703
ssdeep: 768:mkyPOUNKIcfoLLLlyNyd0iKUs5lCGJE/WXQ7/eice1ZQBZrhO+17:m1POUQr8y4lzsNJGi01QBV
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Xorist.ln also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Ransom.AIG
CAT-QuickHealTrojan.Ransom.FO4
McAfeeArtemis!599ED7612A58
MalwarebytesRansom.Xorist
VIPRETrojan.Win32.Ransom.fo (v)
AegisLabTrojan.Win32.Xorist.j!c
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005451b81 )
BitDefenderTrojan.Ransom.AIG
K7GWTrojan ( 005451b81 )
Cybereasonmalicious.12a580
ArcabitTrojan.Ransom.AIG
BaiduWin32.Trojan.Filecoder.g
CyrenW32/Filecoder.Y.gen!Eldorado
SymantecRansom.CryptoTorLocker
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.CryptoTorLocker2015-1
KasperskyTrojan-Ransom.Win32.Xorist.ln
AlibabaRansom:Win32/Xorist.b1699ada
NANO-AntivirusTrojan.Win32.Xorist.dxuuhl
RisingRansom.Sorikrypt!8.8822 (TFE:dGZlOgXtPoR7hsKg1Q)
Ad-AwareTrojan.Ransom.AIG
SophosML/PE-A + Troj/Ransom-EY
ComodoTrojWare.Win32.Kryptik.ER@4o1ar2
F-SecureTrojan.TR/Ransom.Xorist.EJ
DrWebTrojan.Encoder.94
TrendMicroRansom_XORIST.SMA
McAfee-GW-EditionRansom-FASZ!31F584DF7624
FireEyeGeneric.mg.599ed7612a580314
EmsisoftTrojan.Ransom.AIG (B)
IkarusTrojan-Ransom.Xorist
AviraTR/Ransom.Xorist.EJ
eGambitUnsafe.AI_Score_98%
Antiy-AVLTrojan[Ransom]/Win32.Xorist
GridinsoftRansom.Win32.Ransom.sa
MicrosoftRansom:Win32/Sorikrypt
ViRobotTrojan.Win32.A.Xorist.1268736[UPX]
AhnLab-V3Trojan/Win32.Xorist.R25524
ZoneAlarmTrojan-Ransom.Win32.Xorist.ln
GDataWin32.Trojan-Ransom.Xorist.D
CynetMalicious (score: 100)
ESET-NOD32a variant of Win32/Filecoder.Q
VBA32Hoax.Xorist
ALYacTrojan.Ransom.AIG
MAXmalware (ai score=83)
CylanceUnsafe
PandaTrj/RansomXor.A
TrendMicro-HouseCallRansom_XORIST.SMA
TencentTrojan.Win32.CryptoTorLocker2015.a
YandexTrojan.GenAsa!/o0pq2Faa4I
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Xorist.DD8C!tr.ransom
BitDefenderThetaGen:NN.ZexaF.34608.hmGfaq8h7vii
AVGFileRepMalware
AvastFileRepMalware
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Win32/Ransom.Xorist.HwsB1IMA

How to remove Trojan-Ransom.Win32.Xorist.ln?

Trojan-Ransom.Win32.Xorist.ln removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment