Trojan

Trojan.ref removal

Malware Removal

The Trojan.ref is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.ref virus can do?

  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs

How to determine Trojan.ref?


File Info:

crc32: F3024950
md5: ddbe4a32cfa041e388cf52109a25aa7d
name: DDBE4A32CFA041E388CF52109A25AA7D.mlw
sha1: 9e469ae272f1914fd0a78e790af31c6335413766
sha256: 5af54be5b9088c65ec57b51481c8f880a6fab2cd11acd6667cc71d19f1151d39
sha512: e0003b944d32424c5c2e0f107378e421ff74c9f7f6c9d2eaed7d5b7c3a76573029c37d408d05b1ae919a56e1ab427e8135745bd8bbf08224cb91280f054c9f10
ssdeep: 12288:/Uc7K3xnqYj5o0wQtmy1N2K8ABuBVwei7lBtfME:scG3xkamy1KP47N
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2017, erteyey
FileVersion: 11.0.0.1
ProductVersion: 11.0.0.1
Translation: 0x0809 0x04b0

Trojan.ref also known as:

BkavW32.AIDetect.malware2
K7AntiVirusAdware ( 00539ed31 )
LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoad3.64706
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Chapak.ZZ6
ALYacTrojan.BRMon.Gen.1
CylanceUnsafe
ZillyaTrojan.Jorik.Win32.423264
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (D)
K7GWAdware ( 00539ed31 )
Cybereasonmalicious.2cfa04
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.HHLN
APEXMalicious
AvastFileRepMalware
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.BRMon.Gen.1
NANO-AntivirusTrojan.Win32.Kryptik.ewspuy
MicroWorld-eScanTrojan.BRMon.Gen.1
TencentWin32.Trojan.Generic.Wvkw
Ad-AwareTrojan.BRMon.Gen.1
SophosML/PE-A
ComodoTrojWare.Win32.Crypt.BF@7gchou
BitDefenderThetaGen:NN.ZexaF.34170.Ky0@aGYsvJm
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_HPGANDCRAB.SMONT
McAfee-GW-EditionBehavesLike.Win32.Generic.hc
FireEyeGeneric.mg.ddbe4a32cfa041e3
EmsisoftTrojan.BRMon.Gen.1 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Jorik.afii
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1115408
Antiy-AVLTrojan/Generic.ASMalwS.23DCC1F
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/Gandcrab.SF!MTB
SUPERAntiSpywareTrojan.Agent/Gen-Festo
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.BRMon.Gen.1
AhnLab-V3Win-Trojan/MalPe34.Suspicious.X2029
Acronissuspicious
McAfeePWS-FCKA!DDBE4A32CFA0
MAXmalware (ai score=98)
VBA32Trojan.ref
PandaTrj/CI.A
TrendMicro-HouseCallRansom_HPGANDCRAB.SMONT
RisingTrojan.Generic@ML.100 (RDML:1ZOUmW0eLX3Ly/cdjakvQg)
YandexTrojan.GenAsa!e/4J7ToWN+8
IkarusTrojan.Crypt
FortinetW32/Kryptik.FYNO!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Trojan.ref?

Trojan.ref removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment