Ransom Trojan

UDS:Trojan-Ransom.MSIL.Cryptor malicious file

Malware Removal

The UDS:Trojan-Ransom.MSIL.Cryptor is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:Trojan-Ransom.MSIL.Cryptor virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine UDS:Trojan-Ransom.MSIL.Cryptor?


File Info:

crc32: 76F5F2F7
md5: cfe479c17573b13eb45c01101998265f
name: CFE479C17573B13EB45C01101998265F.mlw
sha1: 3a2172e5ca3925bc00092dcbdc47607febef7187
sha256: 826d5a72503435830b96b70af63116544808772b1e4dbb234ef6e202d75537d1
sha512: fe01df0b3b71565b2c0d86284d6e3340f41293f1381f6f3cfe7da55feabfe09e2280547da66036ad3d29e94aec1effb796d4122b87011a4ef3a0c9aeef944c8f
ssdeep: 1536:dVfG807xb3EShuHzQGLzRC7UcLDKHIg2Vcl:10FbBhuUGLzRC7UcLDKHIgMY
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2021
Assembly Version: 1.0.0.0
InternalName: Main.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: Main
ProductVersion: 1.0.0.0
FileDescription: Main
OriginalFilename: Main.exe

UDS:Trojan-Ransom.MSIL.Cryptor also known as:

Elasticmalicious (high confidence)
DrWebTrojan.EncoderNET.31373
ALYacGen:Heur.Ransom.REntS.Gen.1
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
Cybereasonmalicious.17573b
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
CynetMalicious (score: 100)
KasperskyUDS:Trojan-Ransom.MSIL.Cryptor.gen
BitDefenderGen:Heur.Ransom.REntS.Gen.1
MicroWorld-eScanGen:Heur.Ransom.REntS.Gen.1
Ad-AwareGen:Heur.Ransom.REntS.Gen.1
McAfee-GW-EditionArtemis!Trojan
FireEyeGen:Heur.Ransom.REntS.Gen.1
EmsisoftGen:Heur.Ransom.REntS.Gen.1 (B)
SentinelOneStatic AI – Suspicious PE
MicrosoftTrojan:Win32/Sabsik.FT.A!ml
ArcabitTrojan.Ransom.REntS.Gen.1
AegisLabTrojan.Win32.Rents.4!c
GDataGen:Heur.Ransom.REntS.Gen.1
McAfeeArtemis!CFE479C17573
MAXmalware (ai score=82)
RisingRansom.DaddyCrypt!1.D566 (CLOUD)
FortinetMSIL/Filecoder.TA!tr
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml

How to remove UDS:Trojan-Ransom.MSIL.Cryptor?

UDS:Trojan-Ransom.MSIL.Cryptor removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment