Ransom Trojan

UDS:Trojan-Ransom.Win32.Vega information

Malware Removal

The UDS:Trojan-Ransom.Win32.Vega is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:Trojan-Ransom.Win32.Vega virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine UDS:Trojan-Ransom.Win32.Vega?


File Info:

name: 536B2702D1EC92CEA77B.mlw
path: /opt/CAPEv2/storage/binaries/1984d16a623b9671d7dcd29ae8afbeaff9bcd9741d1f109ba4306927c7912c94
crc32: 0D52552B
md5: 536b2702d1ec92cea77bd1c70dc5f2d9
sha1: acc78f65795a0cd934b0d140e1e18832a4911789
sha256: 1984d16a623b9671d7dcd29ae8afbeaff9bcd9741d1f109ba4306927c7912c94
sha512: 8d141eabc0f78cbe43d0c54db87a60d97ec4b38e31960bc0a169906e25ced439fcdb8889dc340bc6a79ec1e12c84a8e4a8a63d8575ae75f7920542c921f5158e
ssdeep: 6144:PWfM6iKwtADM5njFGKfi/Xm51QCG8VG1XhmIQ48:+l0LnjFGKf351rGagwhr
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T15344E0DAFC0ACC65E2CEB931042A4F48733BED1A1761E64635673B41597B1F0249AFE8
sha3_384: 453c5e8f60b028c7db05c29bf1e5e9742f95ef0754a7f1dee701a4b772ae75f36e6637d748e0adca9b959e5a0966a0f1
ep_bytes: 4883ec28e88b0200004883c428e972fe
timestamp: 2021-12-07 15:57:09

Version Info:

0: [No Data]

UDS:Trojan-Ransom.Win32.Vega also known as:

LionicTrojan.Win32.Vega.j!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.47595292
FireEyeGeneric.mg.536b2702d1ec92ce
CAT-QuickHealRansom.ZeppelinRI.S25394010
ALYacTrojan.GenericKD.47595292
CylanceUnsafe
SangforTrojan.Win32.Vega.ky
K7AntiVirusTrojan ( 0058b8861 )
AlibabaRansom:Win64/Zeppelin.51dd8996
K7GWTrojan ( 0058b8861 )
CrowdStrikewin/malicious_confidence_100% (W)
VirITTrojan.Win32.PSWStealer.DDY
CyrenW64/Agent.DVU.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win64/TrojanDropper.Agent.EQ
APEXMalicious
Paloaltogeneric.ml
KasperskyUDS:Trojan-Ransom.Win32.Vega
BitDefenderTrojan.GenericKD.47595292
AvastWin64:TrojanX-gen [Trj]
Ad-AwareTrojan.GenericKD.47595292
SophosMal/Generic-R + Troj/Mdrop-JML
DrWebTrojan.Siggen15.40264
ZillyaDropper.Agent.Win64.7111
TrendMicroRansom_Zeppelin.R002C0DLA21
McAfee-GW-EditionBehavesLike.Win64.Dropper.dc
EmsisoftTrojan.GenericKD.47595292 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Vega.u
AviraTR/AD.ZardRansom.sijbx
Antiy-AVLTrojan/Generic.ASBOL.C6C2
GridinsoftRansom.Win64.Sabsik.sa
MicrosoftRansom:Win64/Zeppelin.SS!MTB
GDataTrojan.GenericKD.47595292
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Agent.R458801
McAfeeGenericRXAA-AA!536B2702D1EC
MAXmalware (ai score=84)
VBA32TrojanRansom.Win64.Vega
MalwarebytesTrojan.Dropper
TrendMicro-HouseCallRansom_Zeppelin.R002C0DLA21
TencentTrojan-Dropper.Win64.Agent.ha
YandexTrojan.DR.Agent!A0SIsNTzjPQ
IkarusTrojan-Dropper.Win64.Agent
MaxSecureTrojan.Malware.77584845.susgen
FortinetW64/Agent.EQ!tr
AVGWin64:TrojanX-gen [Trj]

How to remove UDS:Trojan-Ransom.Win32.Vega?

UDS:Trojan-Ransom.Win32.Vega removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment