Ransom Trojan

UDS:Trojan-Ransom.Win32.PornoAsset removal guide

Malware Removal

The UDS:Trojan-Ransom.Win32.PornoAsset is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:Trojan-Ransom.Win32.PornoAsset virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine UDS:Trojan-Ransom.Win32.PornoAsset?


File Info:

name: 914F926A71AC1F55E731.mlw
path: /opt/CAPEv2/storage/binaries/e371e1cf0f39fab69bd1c3ecad16bffece77b80df7a6f2f74d743475d27540fe
crc32: AEC4B62A
md5: 914f926a71ac1f55e731c35bf80b0d1b
sha1: 7afb0e03344ff69afcea750f3c074b8aaed6523b
sha256: e371e1cf0f39fab69bd1c3ecad16bffece77b80df7a6f2f74d743475d27540fe
sha512: 20c72135f58f63a76b969f23effa9a96e9fb48c836d098763782eba2e1791ecd5518d777ea288de452f4760a19e27ea5c8995c15a45afdb67e97dad6041e78f1
ssdeep: 1536:tN8+ZzQmm5lBTwE2T2lF1RgnJo/cO9YdhZ5VPu+cCR6NLIcc:t0RlZwEM2lF8o/cO9Ydtg+cbdc
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F6D33923EA059592E951457118326AAD7A237C31B990CE0773C2BB1C1D76BD3BDF832B
sha3_384: 60d3a990bf2cb6bc9c068a76d9a91958dd5feda8e7fdad01f7c6bfd6b1a1d1e1b3528c653ff4578258df1a71a213b704
ep_bytes: 6880224000e8eeffffff000000000000
timestamp: 2012-09-13 09:54:54

Version Info:

0: [No Data]

UDS:Trojan-Ransom.Win32.PornoAsset also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.PornoAsset.1c!c
MicroWorld-eScanTrojan.GenericKD.70575575
FireEyeGeneric.mg.914f926a71ac1f55
SkyhighBehavesLike.Win32.VBObfus.cm
McAfeeArtemis!914F926A71AC
MalwarebytesGeneric.Malware/Suspicious
SangforTrojan.Win32.Agent.V5e7
AlibabaTrojan:Win32/Vobfus.aeff7fe4
CrowdStrikewin/malicious_confidence_100% (D)
ArcabitTrojan.Generic.D434E5D7
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:Trojan-Ransom.Win32.PornoAsset
BitDefenderTrojan.GenericKD.70575575
AvastWin32:Malware-gen
EmsisoftTrojan.GenericKD.70575575 (B)
F-SecureTrojan.TR/Dropper.Gen
VIPRETrojan.GenericKD.70575575
TrendMicroTROJ_GEN.R002C0XKU23
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.Gen
Antiy-AVLTrojan[Ransom]/Win32.PornoAsset
Kingsoftmalware.kb.a.998
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmUDS:Trojan-Ransom.Win32.PornoAsset
GDataTrojan.GenericKD.70575575
VaristW32/Vobfus.QR.gen!Eldorado
BitDefenderThetaGen:NN.ZevbaF.36608.imX@aGkxeCk
MAXmalware (ai score=83)
Cylanceunsafe
PandaTrj/RansomGen.A
TrendMicro-HouseCallTROJ_GEN.R002C0XKU23
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.73629461.susgen
FortinetPossibleThreat.RF
AVGWin32:Malware-gen
Cybereasonmalicious.3344ff
DeepInstinctMALICIOUS

How to remove UDS:Trojan-Ransom.Win32.PornoAsset?

UDS:Trojan-Ransom.Win32.PornoAsset removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment