Ransom

Ransom.Mole removal guide

Malware Removal

The Ransom.Mole is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.Mole virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Ransom.Mole?


File Info:

crc32: 81C87C7E
md5: 041309e9b0887263c89f5ff23947cf3b
name: 041309E9B0887263C89F5FF23947CF3B.mlw
sha1: 5dca26ea0e63b226da6eb5a2ce0edafc174c4bff
sha256: efd50264cee4f36e18f78820923d8ad4c1133c35cdfa603117cc4f5d5ded7ff5
sha512: 204073510097087f7139ab91373f5f8df388da1aab2c48bab8a01ff098a191a7f9cef3403990b3c19d75c519eb4980deac295c2724f019aa79e89b83f3627ede
ssdeep: 3072:dnwZ13+KF5O+px8/nwbOVf//7RqOSxmGoxaKOZHb:E3+Apx8/KOVfrRq8GWaRZH
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ransom.Mole also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00512dd91 )
LionicTrojan.Win32.Fury.trvM
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader25.12256
ClamAVWin.Malware.Emotet-6335631-0
CAT-QuickHealRansom.GlobeImposter.A4
McAfeeRDN/Ransom.ct
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.5795
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Genasom.74e15a17
K7GWTrojan ( 00512dd91 )
Cybereasonmalicious.9b0887
CyrenW32/S-a759fa4c!Eldorado
ESET-NOD32Win32/Filecoder.HydraCrypt.M
ZonerTrojan.Win32.60009
APEXMalicious
AvastWin32:A1Lock-A [Trj]
CynetMalicious (score: 99)
KasperskyTrojan-Ransom.Win32.Fury.kg
BitDefenderTrojan.GenericKD.5692456
NANO-AntivirusTrojan.Win32.Androm.erosbn
ViRobotTrojan.Win32.Z.Ransom.153088
MicroWorld-eScanTrojan.GenericKD.5692456
TencentMalware.Win32.Gencirc.10bb2a73
Ad-AwareTrojan.GenericKD.5692456
ComodoTrojWare.Win32.Crypt.BJ@7gz5st
BitDefenderThetaAI:Packer.D35DC35B21
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_MOLE.A
McAfee-GW-EditionRDN/Ransom.ct
FireEyeGeneric.mg.041309e9b0887263
EmsisoftTrojan.GenericKD.5692456 (B)
SentinelOneStatic AI – Suspicious PE
JiangminBackdoor.Androm.rgu
WebrootW32.Trojan.Gen
AviraTR/Crypt.XPACK.mjdvc
Antiy-AVLTrojan/Generic.ASMalwS.214F355
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/Genasom
SUPERAntiSpywareRansom.Genasom/Variant
ZoneAlarmTrojan-Ransom.Win32.Fury.kg
GDataWin32.Trojan.Agent.8KSV83
TACHYONTrojan/W32.Crypt.153088.B
AhnLab-V3Trojan/Win32.Matrixran.R205320
VBA32BScope.Trojan.Inject
MAXmalware (ai score=100)
MalwarebytesRansom.Mole
PandaTrj/WLT.C
TrendMicro-HouseCallRansom_MOLE.A
RisingTrojan.Generic@ML.100 (RDML:rGZ/S1TP0OnOK83YE58rfQ)
YandexTrojan.GenAsa!VSzOKULE1eU
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.DWPH!tr
AVGWin32:A1Lock-A [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Fury.HwoCLWMA

How to remove Ransom.Mole?

Ransom.Mole removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment