Ransom

Should I remove “Ransom.Ryuk.21”?

Malware Removal

The Ransom.Ryuk.21 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.Ryuk.21 virus can do?

  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • A process attempted to delay the analysis task by a long amount of time.
  • Uses suspicious command line tools or Windows utilities

How to determine Ransom.Ryuk.21?


File Info:

crc32: 0459AC25
md5: 61f3e072c19f758359d18d5e8f757630
name: 61F3E072C19F758359D18D5E8F757630.mlw
sha1: 40665226308f95a4e297ccd1bc63e2b6e1337d6b
sha256: 8ce02ae8466375b1e5ee47e6b8c4e0b5f3dbb1b0493ba7012b3662b00cbfb736
sha512: 2302205f21afe80a4fd2027acb5faebf18ca6b5cc0f59581e6664877ca886ef4b0d3112aeefa6f76c7876c4db9536dd57a221ba80376b4b201e7729a5d639d6c
ssdeep: 1536:QL3ZFimwRbpMVNgIULCqgmzG/ra/MRlyEUjFXf9btfmkEWQ6tfsWicd7yPgMNQl:QL6pMXQQoGYMRlyJpfBM6PtlGPg4Q
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ransom.Ryuk.21 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053b8241 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.10700
CynetMalicious (score: 100)
ALYacTrojan.Ransom.Ryuk
CylanceUnsafe
ZillyaTrojan.AntiAV.Win32.10243
SangforWin.Ransomware.Ryuk-6688842-0
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Jabaxsta.c0a48c91
K7GWTrojan ( 0053b8241 )
Cybereasonmalicious.2c19f7
CyrenW32/Trojan.QAIJ-1716
SymantecTrojan.Cridex
ESET-NOD32a variant of Win32/Filecoder.Ryuk.M
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
ClamAVWin.Ransomware.Ryuk-6688842-0
KasperskyUDS:Trojan.Win32.AntiAV
BitDefenderGen:Variant.Ransom.Ryuk.21
NANO-AntivirusTrojan.Win32.AntiAV.fhcvzn
MicroWorld-eScanGen:Variant.Ransom.Ryuk.21
Ad-AwareGen:Variant.Ransom.Ryuk.21
SophosMal/Generic-R + Troj/Ransom-FAF
ComodoMalware@#1vrlnb5eclo9c
BitDefenderThetaGen:NN.ZexaF.34670.iqW@aurVGPj
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom.Win32.RYUK.SM
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
FireEyeGeneric.mg.61f3e072c19f7583
EmsisoftGen:Variant.Ransom.Ryuk.21 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.AntiAV.ccr
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1141175
eGambitUnsafe.AI_Score_98%
MicrosoftRansom:Win32/Jabaxsta.A
AegisLabTrojan.Win32.AntiAV.4!c
GDataGen:Variant.Ransom.Ryuk.21
AhnLab-V3Trojan/Win32.Ryukran.R234918
McAfeeRansom-Ryuk!61F3E072C19F
MAXmalware (ai score=100)
VBA32BScope.Trojan.AntiAV
MalwarebytesMalware.AI.218522461
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom.Win32.RYUK.SM
TencentWin32.Trojan.Filecoder.Wptj
YandexTrojan.GenAsa!Lo5zjuSQo1Y
IkarusTrojan-Ransom.Ryuk
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Ryuk.B!tr.ransom
AVGWin32:RansomX-gen [Ransom]
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.AntiAV.HwoCEpsA

How to remove Ransom.Ryuk.21?

Ransom.Ryuk.21 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment