Ransom Trojan

Trojan.RansomKD.12449821 removal

Malware Removal

The Trojan.RansomKD.12449821 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.RansomKD.12449821 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.RansomKD.12449821?


File Info:

crc32: C5826999
md5: b3b9d51062a9aa7356efc96ee2ab734a
name: B3B9D51062A9AA7356EFC96EE2AB734A.mlw
sha1: d6f9dce540d1fb95a83bc17fed9e792b70b826a7
sha256: 30961ac7a04a50d7b26b5e44cfc91e2b37ba12b5f8c8a1748c586b4eeba38cf8
sha512: f730f1830689d24072d4e91abc7143a13357e3b572e3041dbc5fbbaec6ab5f193a0b636cf0daf1f2a68193b4861944298606f0822dd20d2d5d9a33c2fbb45f19
ssdeep: 24576:k7bl0DY2LNX9RK3b0L6CsOgygLcBxbTlJrGwMNZW5FDvoFtdN4oR09Ewvbx4AVCC:k75BEe3bJwJNvMNk5FDvoxNiiO4A5Xf
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
FileVersion:
CompanyName: Cyberland
Comments: This installation was built with Inno Setup.
ProductName: Cyber Prot
ProductVersion: 2.1
FileDescription: Cyber Prot Setup
Translation: 0x0000 0x04b0

Trojan.RansomKD.12449821 also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanTrojan.RansomKD.12449821
FireEyeTrojan.RansomKD.12449821
ALYacTrojan.RansomKD.12449821
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Zerber.usrg
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.RansomKD.12449821
K7GWRiskware ( 0040eff71 )
SymantecTrojan.Gen.7
KasperskyTrojan-Ransom.Win32.Zerber.gckp
AlibabaRansom:Win32/Zerber.65846724
AegisLabTrojan.Win32.Zerber.j!c
TencentWin32.Trojan.Agent.Pfsz
Ad-AwareTrojan.RansomKD.12449821
EmsisoftTrojan.RansomKD.12449821 (B)
ZillyaTrojan.Agent.Win32.759040
McAfee-GW-EditionBehavesLike.Win32.AdwareFileTour.tc
SophosGeneric PUA NG (PUA)
JiangminTrojan.Agent.cird
MAXmalware (ai score=97)
MicrosoftTrojan:Win32/Ymacco.AA30
ArcabitTrojan.RansomKD.DBDF81D
ZoneAlarmTrojan-Ransom.Win32.Zerber.gckp
GDataTrojan.RansomKD.12449821
McAfeeArtemis!B3B9D51062A9
VBA32Hoax.Agent
MalwarebytesGeneric.Malware/Suspicious
IkarusTrojan-RansomKD
eGambitUnsafe.AI_Score_99%
FortinetW32/Agent.AAFK!tr
Cybereasonmalicious.062a9a
Paloaltogeneric.ml

How to remove Trojan.RansomKD.12449821?

Trojan.RansomKD.12449821 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment