Malware

Win64/Filecoder.Ryuk.A removal instruction

Malware Removal

The Win64/Filecoder.Ryuk.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win64/Filecoder.Ryuk.A virus can do?

    How to determine Win64/Filecoder.Ryuk.A?

    
    

    File Info:

    crc32: CE2C23C9
    md5: 32cbc69f85cc47d8e35dc20dfbda6948
    name: 32CBC69F85CC47D8E35DC20DFBDA6948.mlw
    sha1: 35dd5239977c2922a06389061cca846ec09453bb
    sha256: 795db7bdad1befdd3ad942be79715f6b0c5083d859901b81657b590c9628790f
    sha512: f485a56c783dba3c15d691709a6736d5589194ec8f54e8d01342e7d6f4c54b4a56eae0fa49e150e8a13780fcb7e2e50337c8eaa026baf51774527351b365a25c
    ssdeep: 3072:FnJc2mXEkovNxp/gR4DoBOX8CdMzCqV5NNFqe/P:7EsV/gekBIt9W3
    type: PE32+ executable (GUI) x86-64, for MS Windows

    Version Info:

    0: [No Data]

    Win64/Filecoder.Ryuk.A also known as:

    K7AntiVirusTrojan ( 005433811 )
    LionicTrojan.Win32.Generic.4!c
    Elasticmalicious (high confidence)
    DrWebTrojan.Encoder.26969
    CynetMalicious (score: 100)
    CAT-QuickHealTrojan.GenericRI.S13401658
    ALYacTrojan.Ransom.Ryuk
    CylanceUnsafe
    ZillyaTrojan.Filecoder.Win64.8900
    SangforWin.Ransomware.Ryuk-6688842-0
    CrowdStrikewin/malicious_confidence_100% (W)
    AlibabaRansom:Win32/Ransomware.b98d85f7
    K7GWTrojan ( 005433811 )
    Cybereasonmalicious.f85cc4
    CyrenW64/Ransom.Ryuk.A.gen!Eldorado
    SymantecRansom.Hermes!gen2
    ESET-NOD32a variant of Win64/Filecoder.Ryuk.A
    APEXMalicious
    AvastWin64:MalwareX-gen [Trj]
    ClamAVWin.Ransomware.Ryuk-6688842-0
    KasperskyHEUR:Trojan.Win32.Generic
    BitDefenderGeneric.Ransom.Ryuk.9F9DE2E6
    NANO-AntivirusTrojan.Win64.Encoder.flulke
    ViRobotTrojan.Win64.S.Ryuk.155648
    MicroWorld-eScanGeneric.Ransom.Ryuk.9F9DE2E6
    TencentWin32.Trojan.Generic.Lked
    Ad-AwareGeneric.Ransom.Ryuk.9F9DE2E6
    SophosMal/Generic-R + Troj/Ransom-FAF
    ComodoMalware@#ga493swfm3o2
    VIPRETrojan.Win32.Generic!BT
    TrendMicroRansom.Win64.RYUK.SMTHC
    McAfee-GW-EditionBehavesLike.Win64.RansomRyuk.ch
    FireEyeGeneric.mg.32cbc69f85cc47d8
    EmsisoftGeneric.Ransom.Ryuk.9F9DE2E6 (B)
    SentinelOneStatic AI – Suspicious PE
    JiangminTrojan.Cryptor.jk
    WebrootW32.Ransom.Ryuk
    AviraHEUR/AGEN.1110011
    Antiy-AVLTrojan/Generic.ASMalwS.2A17421
    MicrosoftRansom:Win32/Ryuk.AA
    ArcabitGeneric.Ransom.Ryuk.9F9DE2E6
    ZoneAlarmHEUR:Trojan.Win32.Generic
    GDataGeneric.Ransom.Ryuk.9F9DE2E6
    AhnLab-V3Malware/Win64.Ransom.C2922646
    Acronissuspicious
    McAfeeRansom-Ryuk!32CBC69F85CC
    MAXmalware (ai score=100)
    VBA32TrojanRansom.Cryptor
    MalwarebytesRansom.Ryuk
    PandaTrj/CI.A
    TrendMicro-HouseCallRansom.Win64.RYUK.SMTHC
    YandexTrojan.GenAsa!WycM4bEay84
    IkarusTrojan-Ransom.Ryuk
    MaxSecureTrojan.Malware.7164915.susgen
    FortinetW64/Ryuk.A!tr.ransom
    AVGWin64:MalwareX-gen [Trj]
    Paloaltogeneric.ml
    Qihoo-360Win32/Ransom.Ryuk.H8oAEpsA

    How to remove Win64/Filecoder.Ryuk.A?

    Win64/Filecoder.Ryuk.A removal tool
    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.

    About the author

    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Leave a Comment