Ransom Trojan

How to remove “Trojan.RansomKD.6285968”?

Malware Removal

The Trojan.RansomKD.6285968 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.RansomKD.6285968 virus can do?

  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Russian
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.RansomKD.6285968?


File Info:

crc32: 6962E2A2
md5: f195966f5bf9891dd8e6b7c13f9ee513
name: F195966F5BF9891DD8E6B7C13F9EE513.mlw
sha1: 1859a380267aee39009332d2a2c24949b423c5e7
sha256: 3dd25121f668343692f278a0f4092d7b485b75e7d522fd0daf29fe2c9373b677
sha512: 7817c4b5c91cac2e3bde00ee1616e9c2eaab53ce4c25c611d016509b600d416baa8d4f040968f0648a9ae32fa6d9b607e4829b222380918476c422fc99f99f39
ssdeep: 12288:TXmwRo+mv8QD4+0N46W1mrvHMBJ7VXHf0v35BW0z/jc9v4gaBHG+ZL7qBF:TX48QE+UMGveJ5X/O5NbPg3+hev
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: The sims 4
FileDescription: The Sims 4 Online 1.00 Installation
FileVersion: 1.00
Comments:
CompanyName: The sims 4
Translation: 0x0409 0x04e4

Trojan.RansomKD.6285968 also known as:

BkavW32.AIDetect.malware2
DrWebTrojan.VbCrypt.1509
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Dynamer.MF.104
ALYacTrojan.RansomKD.6285968
CylanceUnsafe
SangforTrojan.Win32.VB.dmqn
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojan:Win32/Injector.03eec08d
Cybereasonmalicious.f5bf98
CyrenW32/VB.MUYI-3710
ESET-NOD32Win32/Injector.DOGM
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Malware.Agent-6389312-0
KasperskyTrojan.Win32.VB.dmqn
BitDefenderTrojan.RansomKD.6285968
NANO-AntivirusTrojan.Win32.Agent.eogmcz
MicroWorld-eScanTrojan.RansomKD.6285968
TencentWin32.Trojan.Vb.Ebzx
SophosMal/Generic-S
ComodoMalware@#3tz7onvjj9kxc
F-SecureHeuristic.HEUR/AGEN.1127017
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGeneric.cvh
FireEyeTrojan.RansomKD.6285968
EmsisoftTrojan.RansomKD.6285968 (B)
JiangminTrojan.Blocker.hxi
AviraHEUR/AGEN.1127017
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Dynamer!rfn
ArcabitTrojan.RansomKD.D5FEA90
ZoneAlarmTrojan.Win32.VB.dmqn
GDataTrojan.RansomKD.6285968
McAfeeGeneric.cvh
MAXmalware (ai score=99)
VBA32Trojan-Ransom.Blocker
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/CI.A
RisingTrojan.Injector!8.C4 (CLOUD)
IkarusTrojan.Win32.Injector
FortinetW32/Injector.DOGM!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.RansomKD.6285968?

Trojan.RansomKD.6285968 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment