Malware

What is “W32.Ramnit.R1”?

Malware Removal

The W32.Ramnit.R1 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What W32.Ramnit.R1 virus can do?

  • Network activity detected but not expressed in API logs

How to determine W32.Ramnit.R1?


File Info:

crc32: 61E6BE16
md5: e56b3265c1386697fd4d0497577aa71b
name: E56B3265C1386697FD4D0497577AA71B.mlw
sha1: 5b193a643f200e5073a23c201973cadf81632996
sha256: 2aa6e5065c1750206bd23f60287bf0ce72cc6d4df151c37717cfe8805d68f7e7
sha512: 188826f1cfab632176cec300dd2ee943447547631d471bab6e621301ad5cb9a3bbde689ff4cefc613d0d56cd367c48d4a7fac6135206d2385950bd1792095ecf
ssdeep: 6144:X8mWpBIgci82HBzEQOpP9TiLQeBpYUw6u/l8hJ844/5hWky8k7:XXWppS9QONNiLQJv2hm4K5Akx6
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

W32.Ramnit.R1 also known as:

LionicTrojan.Win32.Seven.4!c
CAT-QuickHealW32.Ramnit.R1
ALYacGen:Variant.Ransom.Seven.18
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaRansom:Win32/Ramnit.6a9529aa
Cybereasonmalicious.5c1386
BaiduWin32.Trojan.Kryptik.mx
SymantecTrojan.Gen.2
ZonerTrojan.Win32.Ramnit.292
APEXMalicious
AvastWin32:Ramnit-CC [Trj]
ClamAVWin.Trojan.Agent-5294932-0
BitDefenderGen:Variant.Ransom.Seven.18
MicroWorld-eScanGen:Variant.Ransom.Seven.18
Ad-AwareGen:Variant.Ransom.Seven.18
SophosML/PE-A
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Mabezat.fc
FireEyeGeneric.mg.e56b3265c1386697
EmsisoftGen:Variant.Ransom.Seven.18 (B)
WebrootW32.Gen.BT
MicrosoftTrojan:Win32/Occamy.C
GDataGen:Variant.Ransom.Seven.18
AhnLab-V3Malware/Gen.Generic.C2982212
McAfeeArtemis!E56B3265C138
MAXmalware (ai score=100)
MalwarebytesNeshta.Virus.FileInfector.DDS
PandaTrj/CI.A
IkarusW32.Ramnit
FortinetPossibleThreat
AVGWin32:Ramnit-CC [Trj]
Paloaltogeneric.ml

How to remove W32.Ramnit.R1?

W32.Ramnit.R1 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment