Ransom

Ransom:PowerShell/Roduk removal

Malware Removal

The Ransom:PowerShell/Roduk is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:PowerShell/Roduk virus can do?

  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Ransom:PowerShell/Roduk?


File Info:

crc32: 5D3E4B4A
md5: d28a3176856a5a91bc163b644fc97d15
name: D28A3176856A5A91BC163B644FC97D15.mlw
sha1: a3d510177f20dc4e43437c5c8b2e7c38ab369faf
sha256: 73fb5e5f4d898f34b1a64e5f199d278e94dbbb97097e8663ce9facb789b7c776
sha512: c76bb1ce990b1c0d86eca58b73961f18122c67c4533e2e060b91902a22a5a57c1fe9033747b34b274d0bb40f870cc4be5b0142dc4443e796e5622b03c3d953e4
ssdeep: 3072:Qd/vyWmJe45PRnweDTh0ScBbRrnPKdFC9C4PUz/L1unpXbna3M:QXpaRnwKmSmPKdo9fbt
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Ransom:PowerShell/Roduk also known as:

K7AntiVirusRiskware ( 0040eff71 )
LionicTrojan.Win32.Generic.4!c
CAT-QuickHealTrojan.Contebrew
ALYacTrojan.GenericKD.46396954
CylanceUnsafe
SangforTrojan.Win32.Tool-PassView.b
AlibabaHackTool:Win64/ProductKey.6a7041f3
K7GWRiskware ( 0040eff71 )
CyrenW32/Trojan.RSAH-5021
SymantecTrojan.Gen.MBT
APEXMalicious
AvastFileRepMalware
BitDefenderTrojan.GenericKD.46396954
MicroWorld-eScanTrojan.GenericKD.46396954
Ad-AwareTrojan.GenericKD.46396954
SophosMal/Generic-S
ComodoMalware@#8the8oam521t
VIPRETrojan.Win32.Generic!BT
TrendMicroHackTool.Win32.ProduKey.AE
McAfee-GW-EditionTool-PassView.b
FireEyeTrojan.GenericKD.46396954
EmsisoftTrojan.GenericKD.46396954 (B)
WebrootW32.Hacktool.Gen
eGambitUnsafe.AI_Score_90%
Antiy-AVLTrojan/Generic.ASMalwS.32B9CB6
MicrosoftRansom:PowerShell/Roduk
ArcabitTrojan.Generic.D2C3F61A
GDataTrojan.GenericKD.46396954
McAfeeArtemis!D28A3176856A
MAXmalware (ai score=88)
PandaTrj/CI.A
TrendMicro-HouseCallHackTool.Win32.ProduKey.AE
FortinetRiskware/PassView
AVGFileRepMalware

How to remove Ransom:PowerShell/Roduk?

Ransom:PowerShell/Roduk removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment