Ransom Virus

Ransom.InducVirus information

Malware Removal

The Ransom.InducVirus is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.InducVirus virus can do?

  • Creates RWX memory
  • Unconventionial language used in binary resources: Russian
  • Writes a potential ransom message to disk
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Ransom.InducVirus?


File Info:

crc32: 55F5BFD6
md5: 724709fe112bfd162e0faece458a393a
name: 724709FE112BFD162E0FAECE458A393A.mlw
sha1: b04ef2a413ef4558c1a65e2148b0c5bff97a9052
sha256: 8f12f1493f2d3a5eafbe712c8983e68bfa464f74c93c7e49f9cdd54f5d38cdac
sha512: 6e2d821ff7f46bb87b1e64fbcf87067f1436aeb63814de9245231b183a0678a37392062a2db1e1bab8c6f0802edb01f3a499e5babf57c7788e6cc60cd42a12e8
ssdeep: 6144:7UafnsLSh2qI5YTVqurEnIR1/oa3Ve3PC9xcXZzcfEquN7qgjOfjfmT36swDTe:NfnsLAI5iVqXmG+xcFeEMgjyjOT3m
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ransom.InducVirus also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.26904
CynetMalicious (score: 100)
CAT-QuickHealRansom.DelphTear.S4232920
ALYacGeneric.Ransom.DelphTear.1CD86FA4
CylanceUnsafe
ZillyaTrojan.CryFile.Win32.289
SangforTrojan.Win32.Save.a
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.NTC
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan-Ransom.Win32.CryFile.gen
BitDefenderGeneric.Ransom.DelphTear.1CD86FA4
NANO-AntivirusTrojan.Win32.CryFile.fkevyp
MicroWorld-eScanGeneric.Ransom.DelphTear.1CD86FA4
Ad-AwareGeneric.Ransom.DelphTear.1CD86FA4
ComodoMalware@#13sybd0qupg1o
BitDefenderThetaAI:Packer.1D6B9C041E
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.BadFile.gh
FireEyeGeneric.mg.724709fe112bfd16
EmsisoftGeneric.Ransom.DelphTear.1CD86FA4 (B)
JiangminTrojan.CryFile.fd
AviraTR/FileCoder.jpldx
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Fareit!ml
GDataGeneric.Ransom.DelphTear.1CD86FA4
AhnLab-V3Malware/Win32.Generic.C2865617
McAfeeArtemis!724709FE112B
MAXmalware (ai score=85)
VBA32BScope.TrojanRansom.CryFile
MalwarebytesRansom.InducVirus
PandaTrj/GdSda.A
YandexTrojan.GenAsa!9ii4YoZwKaQ
IkarusTrojan-Ransom.WeedTeam
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/FileCoder.NTC!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Ransom.InducVirus?

Ransom.InducVirus removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment