Ransom

Ransom.Troldesh.145 removal instruction

Malware Removal

The Ransom.Troldesh.145 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.Troldesh.145 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time

How to determine Ransom.Troldesh.145?


File Info:

crc32: A7A70983
md5: e2eda4cbaede8fa637f7479de0092fb8
name: E2EDA4CBAEDE8FA637F7479DE0092FB8.mlw
sha1: e86de95c3bd3c7d7f3ffa79057a9ce029f41519f
sha256: 8ecba3ae335f4a42f83e1b4a5bc2c15ff000849a61ddacefa64792df50c786e7
sha512: ca6a5e5cd07d009731b14816c960e78698c38b451a54c6d786ec6ec403c939c5f7e105f34451a73c8cae6c5ac2bcf3c29424e4cd31dd11000d267c5ed414da83
ssdeep: 6144:Yxc7taZowAqvRAAY9pqmOV858O+BdcVOx8Hi+S:YwaZowhvRVKArBdUm8H
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa92006-2015 The qBittorrent project
FileVersion: 3.3.0.0
CompanyName: The qBittorrent project
ProductName: qBittorrent
ProductVersion: 3.3.0.0
FileDescription: qBittorrent - A Bittorrent Client
Translation: 0x0409 0x04b0

Ransom.Troldesh.145 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
ClamAVBC.Win.Packer.Troll-14
ALYacGen:Variant.Ransom.Troldesh.145
CylanceUnsafe
ZillyaWorm.Kasidet.Win32.191
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaWorm:Win32/Yakes.4e49d779
K7GWTrojan ( 004d8c471 )
K7AntiVirusTrojan ( 004d8c471 )
SymantecRansom.Kovter
ESET-NOD32Win32/Kasidet.AF
APEXMalicious
AvastWin32:Banker-MVY [Trj]
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Yakes.owkq
BitDefenderGen:Variant.Ransom.Troldesh.145
NANO-AntivirusTrojan.Win32.Yakes.eavldh
MicroWorld-eScanGen:Variant.Ransom.Troldesh.145
TencentWin32.Trojan.Yakes.Alir
Ad-AwareGen:Variant.Ransom.Troldesh.145
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34678.vK0@aehpA4oi
VIPRETrojan.Win32.Generic!BT
TrendMicroMal_MiliCry-1h
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
FireEyeGeneric.mg.e2eda4cbaede8fa6
EmsisoftGen:Variant.Ransom.Troldesh.145 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Yakes.jfq
WebrootTrojan.Dropper.Gen
AviraHEUR/AGEN.1128824
eGambitUnsafe.AI_Score_77%
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Carberp.K
AegisLabTrojan.Win32.Yakes.4!c
GDataGen:Variant.Ransom.Troldesh.145
Acronissuspicious
McAfeeArtemis!E2EDA4CBAEDE
MAXmalware (ai score=86)
VBA32Trojan.Yakes
PandaTrj/GdSda.A
TrendMicro-HouseCallMal_MiliCry-1h
RisingWorm.Kasidet!8.206 (CLOUD)
YandexTrojan.Yakes!Y2h1rkgcZFc
IkarusWorm.Win32.Kasidet
FortinetW32/Kryptik.ELSV!tr
AVGWin32:Banker-MVY [Trj]
Qihoo-360Win32/Botnet.Yakes.HwoBvo8A

How to remove Ransom.Troldesh.145?

Ransom.Troldesh.145 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment