Ransom Trojan

Trojan-Ransom.Win32.Snocry.ddv removal

Malware Removal

The Trojan-Ransom.Win32.Snocry.ddv is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Snocry.ddv virus can do?

  • A process attempted to delay the analysis task.
  • Unconventionial language used in binary resources: Russian
  • Installs itself for autorun at Windows startup
  • Anomalous binary characteristics

How to determine Trojan-Ransom.Win32.Snocry.ddv?


File Info:

crc32: BEDE0E14
md5: 28c442859b1e50a09e0789afc67222a5
name: 28C442859B1E50A09E0789AFC67222A5.mlw
sha1: da7d152096906a6fc6c90c28c59d9ab9fafc47c0
sha256: 0a87b8ad0dd13a0dc62960d0ae8564bbb19c5706106080fe63692ee14587b17b
sha512: 001b91bced43076543c6f44f9576e86eabdda216818f1e632dac983d613659dd7af4f8b6dcd9ef2e5602ea280e02c116c0e3207e86bcb8e26fa9eee30544f6d2
ssdeep: 1536:U/Tmi1hw2c1nyTKvxqr1TnxzGVkHOAhqIewOWn129hmGjf9mmfAsdLzlly/+WyaT:Ubmi/wbyKZqr1bxzpnO01+msV9fTzlwJ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Snocry.ddv also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 004f15bb1 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.11536
CynetMalicious (score: 100)
ALYacGen:Variant.Ransom.Nemesis.8
CylanceUnsafe
ZillyaTrojan.Snocry.Win32.577
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Snocry.0c46e1c6
K7GWTrojan ( 004f15bb1 )
Cybereasonmalicious.59b1e5
SymantecSMG.Heur!gen
ESET-NOD32a variant of Win32/Filecoder.FP
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Snocry.ddv
BitDefenderGen:Variant.Ransom.Nemesis.8
NANO-AntivirusVirus.Win32.Gen.ccmw
MicroWorld-eScanGen:Variant.Ransom.Nemesis.8
TencentWin32.Trojan.Raas.Auto
Ad-AwareGen:Variant.Ransom.Nemesis.8
SophosMal/Generic-R + Troj/Ransom-EMW
ComodoMalware@#31hdzp1ef6kso
BitDefenderThetaAI:Packer.2CD878801F
TrendMicroMal_OnCrypt
McAfee-GW-EditionBehavesLike.Win32.HLLP.mh
FireEyeGeneric.mg.28c442859b1e50a0
EmsisoftGen:Variant.Ransom.Nemesis.8 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Ransomware.Gen
AviraHEUR/AGEN.1108768
MicrosoftRansom:Win32/CryptoLemPiz.A
ArcabitTrojan.Ransom.Nemesis.8
AegisLabTrojan.Win32.Snocry.4!c
GDataWin32.Trojan-Ransom.Nemesis.B
AhnLab-V3Trojan/Win32.Snocry.C1923609
McAfeeGenericRXBJ-HZ!28C442859B1E
MAXmalware (ai score=100)
VBA32BScope.Trojan-Ransom.Snocry
MalwarebytesRansom.FileLocker
PandaTrj/CI.A
TrendMicro-HouseCallMal_OnCrypt
RisingRansom.CryptoLemPiz!8.A2DE (CLOUD)
YandexTrojan.Snocry!cPj6ITCxBrQ
IkarusTrojan-Ransom.Nemesis
FortinetW32/Filecoder.FP!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.Snocry.ddv?

Trojan-Ransom.Win32.Snocry.ddv removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment