Ransom Trojan

What is “UDS:Trojan-Ransom.MSIL.Crypmodng”?

Malware Removal

The UDS:Trojan-Ransom.MSIL.Crypmodng is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:Trojan-Ransom.MSIL.Crypmodng virus can do?

  • Network activity detected but not expressed in API logs

How to determine UDS:Trojan-Ransom.MSIL.Crypmodng?


File Info:

crc32: 269BFCF7
md5: e87da2ea6b08000713fc997543426a5e
name: E87DA2EA6B08000713FC997543426A5E.mlw
sha1: c18a30b4b22298ad86796b7667b42b0c8c92787c
sha256: 802f1f5823881d1717771e104eefc27d07f7b92bebc533aa0b33fb1233ca3d4d
sha512: 50b2343c19b1008e5a95600b4326f6afdcd75f8d7d5564cf8a5872e6a4fd07ac54e1369751a2e29a481dcfac9d00908d9c5bad3d987da3f7f28fcfc357589745
ssdeep: 1536:8dypNpJyCNalo0AiWxVj9qYlE6Ym1Ovy6aeYyaIM:8gpNpcyZNj9HO6AK6apTIM
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2020
Assembly Version: 1.0.0.0
InternalName: UnlockYourFiles.exe
FileVersion: 1.0.0.0
ProductName: Unlock Your Files
ProductVersion: 1.0.0.0
FileDescription: Unlock Your Files
OriginalFilename: UnlockYourFiles.exe

UDS:Trojan-Ransom.MSIL.Crypmodng also known as:

Elasticmalicious (high confidence)
DrWebTrojan.MulDrop16.46389
ALYacTrojan.Agent.FGTQ
CylanceUnsafe
CrowdStrikewin/malicious_confidence_70% (D)
Cybereasonmalicious.4b2229
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.NAUVGDF
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
KasperskyUDS:Trojan-Ransom.MSIL.Crypmodng.gen
BitDefenderTrojan.GenericKD.46223110
MicroWorld-eScanTrojan.GenericKD.46223110
Ad-AwareTrojan.GenericKD.46223110
SophosML/PE-A
BitDefenderThetaGen:NN.ZemsilF.34686.fm1@aqGyzOk
FireEyeGeneric.mg.e87da2ea6b080007
EmsisoftTrojan.GenericKD.46223110 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_84%
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/Genasom
GDataMSIL.Trojan.BSE.1P39KVM
MAXmalware (ai score=88)
RisingRansom.Genasom!8.293 (TFE:dGZlOgzktr7Fb9qM6Q)
FortinetMSIL/Generic.AP.A9C450A!tr
AVGWin32:MalwareX-gen [Trj]

How to remove UDS:Trojan-Ransom.MSIL.Crypmodng?

UDS:Trojan-Ransom.MSIL.Crypmodng removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment