Trojan

Trojan:Win32/Ropest.J information

Malware Removal

The Trojan:Win32/Ropest.J is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Ropest.J virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan:Win32/Ropest.J?


File Info:

crc32: 8FB9973D
md5: e3fba3f73154b2703d3a7d4378867923
name: E3FBA3F73154B2703D3A7D4378867923.mlw
sha1: 9068ace241e7245b01054f55fc357f2ce629ad3c
sha256: bd00d15e2e6e77097f6d159a95a4460001a07e038dbc1e79b03e747af7c497d9
sha512: 3c67907e2ff3f2f85a3f395a619707416fcf445c41d5641cb1d282d3a997d3e514634654cc39b24782e58fedbd4659459a6ca4a34a318052ffaac750ecb46982
ssdeep: 3072:yYIs55Fu6fFF0/EM0qXrTzB0Tx8USKZZEqFIrIvekxy3LpWkdqfR/9iLan5:yO5/0cM0irTlASi8uy1W4ki8
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Busyness Eros But
InternalName: suspensor
FileVersion: 11.5
CompanyName: Busyness Eros But
ProductName: suspensor mento phoo
ProductVersion: 11.5
FileDescription: suspensor cog scorny
OriginalFilename: suspensor.exe
Translation: 0x0409 0x04b0

Trojan:Win32/Ropest.J also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop6.42239
CynetMalicious (score: 100)
CAT-QuickHealRansom.Cerber.A3
ALYacTrojan.GenericKD.3267996
CylanceUnsafe
ZillyaTrojan.Zerber.Win32.99
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Zerber.3040af84
K7GWTrojan ( 004f7ebe1 )
K7AntiVirusTrojan ( 004f7ebe1 )
CyrenW32/Zerber.MSDT-5894
SymantecRansom.Cerber
ESET-NOD32Win32/Filecoder.Cerber.B
ZonerTrojan.Win32.42038
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Zerber.aqc
BitDefenderTrojan.GenericKD.3267996
NANO-AntivirusTrojan.Win32.Samca.ftzcfi
ViRobotTrojan.Win32.S.Ransom.173824
MicroWorld-eScanTrojan.GenericKD.3267996
TencentMalware.Win32.Gencirc.116a3134
Ad-AwareTrojan.GenericKD.3267996
SophosML/PE-A + Troj/Ransom-DCT
ComodoMalware@#3l906fo4wvi9k
BitDefenderThetaAI:Packer.3D9ABAF11E
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_CERBER.IA
McAfee-GW-EditionRansom-O.c
FireEyeGeneric.mg.e3fba3f73154b270
EmsisoftTrojan.GenericKD.3267996 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Zerber.ee
WebrootTrojan.Dropper.Gen
AviraTR/Samca.14714870
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Ropest.J
AegisLabTrojan.Win32.Buzus.kZ0o
GDataWin32.Trojan.Agent.R3IY77
TACHYONTrojan/W32.Zerber.173824
AhnLab-V3Trojan/Win32.Zerber.C1459421
McAfeeRansom-O.c
MAXmalware (ai score=100)
VBA32Malware-Cryptor.Limpopo
MalwarebytesMalware.AI.2932676442
PandaTrj/WLT.B
TrendMicro-HouseCallRansom_CERBER.IA
RisingRansom.Cerber!8.3058 (CLOUD)
YandexTrojan.GenAsa!tJiY/rlNdJM
IkarusTrojan.Win32.Filecoder
FortinetW32/Kryptik.EYKI!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan:Win32/Ropest.J?

Trojan:Win32/Ropest.J removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment