Ransom Trojan

Trojan.Ransom.Babuk removal

Malware Removal

The Trojan.Ransom.Babuk is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Ransom.Babuk virus can do?

  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • Attempts to delete volume shadow copies
  • Network activity detected but not expressed in API logs
  • Uses suspicious command line tools or Windows utilities

How to determine Trojan.Ransom.Babuk?


File Info:

crc32: 96954DF5
md5: d6c3547136713a246e0784201573ee48
name: D6C3547136713A246E0784201573EE48.mlw
sha1: 8a35d19770e23f7db814b66c8108f39b8b8df6f5
sha256: 76bea9f8c4a30be984f4e1f814f7fe17414042109fd8f987907b5c72e5ba640a
sha512: 794db08e47a4cff5e2d1a5f0aaf799cd7a0f36304029a6cc240cb1bb551939c2774d596ebbdd50ae983e13c5bf975e7ccd46ffe4e3a4e48f9587a091caf5ba36
ssdeep: 1536:W6UhZM4hubesrQLOJgY8ZZP8LHD4XWaNH71dLdG1iiFM2iG2zs4:whZ5YesrQLOJgY8Zp8LHD4XWaNH71dL
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Ransom.Babuk also known as:

K7AntiVirusTrojan ( 005782fe1 )
Elasticmalicious (high confidence)
DrWebTrojan.Siggen12.62665
ClamAVWin.Ransomware.Maze-7473772-0
CAT-QuickHealRansom.Babuk.S22456537
ALYacTrojan.Ransom.Babuk
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/generic.ali2000010
K7GWTrojan ( 005782fe1 )
Cybereasonmalicious.136713
CyrenW32/Babyk.A.gen!Eldorado
SymantecRansom.Babuk
ESET-NOD32a variant of Win32/Filecoder.Babyk.A
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyTrojan-Ransom.Win32.Babuk.a
BitDefenderTrojan.Ransom.Babuk.A
NANO-AntivirusTrojan.Win32.Ransom.iuaipi
ViRobotTrojan.Win32.Ransom.80896.E
MicroWorld-eScanTrojan.Ransom.Babuk.A
TencentMalware.Win32.Gencirc.10ce690d
Ad-AwareTrojan.Ransom.Babuk.A
SophosMal/Generic-R + Troj/Ransom-GGD
BitDefenderThetaGen:NN.ZexaF.34142.euW@aWBl0ug
TrendMicroRansom.Win32.BABUK.SMRD1
McAfee-GW-EditionGenericRXNS-AS!D6C354713671
FireEyeGeneric.mg.d6c3547136713a24
EmsisoftTrojan.FileCoder (A)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1142556
MicrosoftRansom:Win32/Babuk.MAK!MTB
ZoneAlarmHEUR:Trojan-Ransom.Win32.Generic
GDataTrojan.Ransom.Babuk.A
TACHYONRansom/W32.BabukLocker.80896.B
AhnLab-V3Ransomware/Win.Babuk.R428564
Acronissuspicious
McAfeeGenericRXNS-AS!D6C354713671
MAXmalware (ai score=82)
VBA32BScope.TrojanRansom.Crypmod
MalwarebytesRansom.Babuk
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom.Win32.BABUK.SMRD1
RisingRansom.Babuk!1.D7A0 (CLASSIC)
IkarusTrojan-Ransom.Babyk
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/FilecoderProt.F183!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Ransom.Babuk?

Trojan.Ransom.Babuk removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment