Ransom

Ransom.Hydracrypt.7 malicious file

Malware Removal

The Ransom.Hydracrypt.7 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.Hydracrypt.7 virus can do?

  • Executable code extraction
  • Compression (or decompression)
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Ransom.Hydracrypt.7?


File Info:

crc32: 9509C7E3
md5: 76adade359ae8c4f6b1119fd7a06b27f
name: 76ADADE359AE8C4F6B1119FD7A06B27F.mlw
sha1: e41a640df04c5d44799edcea9575cf20537e2198
sha256: 5324c1a7d45ccf0227d64e85fa50a0dad89f3f4ac6f39ab9af8dee8b0f739457
sha512: 150fcb4618ad51c2954d7ca9ddf80baed9c57b40cfac12b69f118fa4e958dbb1ca486de2d429c7d6deae166c565577cbc3d9bf5d90062ea7dcd31b9821162e36
ssdeep: 24576:kIDdN1rbtvFOm/4yCBSZe0dQFouLJkFJc1MhXxVpBF2klBRtkv/kkxfX6DpfJ7iy:kYNxZFJ/4yCBSZeBLLiyM/G65yFxfX6H
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2012
InternalName: Awsome.exe
FileVersion: 1.0.0.1
CompanyName: Awsome Company
ProductName: Awsome Name
ProductVersion: 1.0.0.1
FileDescription: Awsome File
OriginalFilename: Awsome.exe
Translation: 0x0407 0x04b0

Ransom.Hydracrypt.7 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Ransom.Hydracrypt.7
Qihoo-360Win32/TrojanDropper.Generic.HykCFAAB
ALYacGen:Variant.Ransom.Hydracrypt.7
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Ransom.Hydracrypt.7
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.359ae8
BitDefenderThetaGen:NN.ZexaF.34590.wr0@aaXmm!mO
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastFileRepMalware
KasperskyUDS:DangerousObject.Multi.Generic
AlibabaRansom:Win32/Malagent.60edcd9e
RisingDropper.Generic!8.35E (CLOUD)
Ad-AwareGen:Variant.Ransom.Hydracrypt.7
EmsisoftGen:Variant.Ransom.Hydracrypt.7 (B)
ComodoMalware@#29mu43lc5fz3l
F-SecureTrojan.TR/Dropper.Gen
McAfee-GW-EditionPWS-Zbot-FAZJ!76ADADE359AE
FireEyeGeneric.mg.76adade359ae8c4f
SophosMal/Generic-S
IkarusTrojan.Win32.Malagent
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Win32.Pakes
MicrosoftTrojan:Win32/Azorult!ml
ArcabitTrojan.Ransom.Hydracrypt.7
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataGen:Variant.Ransom.Hydracrypt.7
CynetMalicious (score: 100)
McAfeePWS-Zbot-FAZJ!76ADADE359AE
MAXmalware (ai score=85)
VBA32BScope.Backdoor.Comet
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/CI.A
TencentWin32.Trojan.Pakes.Aisj
YandexTrojan.GenAsa!a4RyZuKt4Gw
eGambitUnsafe.AI_Score_97%
FortinetW32/Pakes.AVNF!tr
AVGFileRepMalware
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Ransom.Hydracrypt.7?

Ransom.Hydracrypt.7 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment