Malware

Induc.1 (B) removal

Malware Removal

The Induc.1 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Induc.1 (B) virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Induc.1 (B)?


File Info:

name: BD8640585267FAC6C405.mlw
path: /opt/CAPEv2/storage/binaries/353ceaced63c4cdde702ded50926b0a313da8f089241d4bf67e102a94942aab3
crc32: E02245FB
md5: bd8640585267fac6c405fba5ffb67963
sha1: 6c31b6e51fffae06f292cbeebbb6fab3c46f7e25
sha256: 353ceaced63c4cdde702ded50926b0a313da8f089241d4bf67e102a94942aab3
sha512: 9d5f3c185c81852e125fb03204ac53a60a102e4be5a5b50b6ba47fed6f92992451431383600267c4e364bfe6cc5286407c3b4b7f311d502549b0b779a1b6aa89
ssdeep: 6144:rYEDRBWbsrLSOKog+WYRKDh2CgVORSBlQ:lRBgSLLK7uk2Cg8QjQ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11734BF43EEE18272E43449394C05DB625B6DBFB65F38A5A3358DA94C8F3A1C16B6C343
sha3_384: 54a42bc87bb8b22af46b480d4e35f45735a8f76cef95e2305350b9a415a27f9854c3114ec16078e9f7b533337a7bafae
ep_bytes: 60be00f041008dbe0020feff5783cdff
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Induc.1 (B) also known as:

LionicTrojan.Win32.Induc.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Induc.1
FireEyeGeneric.mg.bd8640585267fac6
ALYacGen:Variant.Induc.1
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 004bcce41 )
K7GWTrojan ( 004bcce41 )
Cybereasonmalicious.85267f
ArcabitTrojan.Induc.1
VirITWin32.Induc.A
CyrenW32/Induc.B.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Induc.A
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Virus.Induc-2
BitDefenderGen:Variant.Induc.1
AvastWin32:Induc
RisingWin32.Indcu.a (CLOUD)
Ad-AwareGen:Variant.Induc.1
EmsisoftGen:Variant.Induc.1 (B)
VIPRETrojan.Win32.Malware.a (fs)
TrendMicroPE_INDUC.A
McAfee-GW-EditionBehavesLike.Win32.Virus.dm
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ViRobotWin32.Induc.A
GDataWin32.Virus.Induct.A
CynetMalicious (score: 100)
Acronissuspicious
McAfeeArtemis!BD8640585267
MAXmalware (ai score=83)
MalwarebytesMalware.AI.1167608709
TrendMicro-HouseCallPE_INDUC.A
TencentWin32.Virus.Induc.Piju
IkarusTrojan-Spy.Win32.Banker.JU
FortinetW32/Induc.A
BitDefenderThetaGen:NN.ZelphiF.34232.omW@aC!oNSl
AVGWin32:Induc
CrowdStrikewin/malicious_confidence_100% (D)
MaxSecureVirus.Induc.A

How to remove Induc.1 (B)?

Induc.1 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment