Ransom

About “Ransom:Win32/Robbinhood.B!dha” infection

Malware Removal

The Ransom:Win32/Robbinhood.B!dha is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom:Win32/Robbinhood.B!dha virus can do?

  • The executable is compressed using UPX

How to determine Ransom:Win32/Robbinhood.B!dha?


File Info:

crc32: 58E7ACDC
md5: e0821cfc268dcaeceeb2b6ac9d61a458
name: E0821CFC268DCAECEEB2B6AC9D61A458.mlw
sha1: 8889e60250a897f1b9de8269011c6e00dc2325a4
sha256: 8659bf514f599791ea384efbfcd4b3785a225b9114bf8eba49cc98fe4451af63
sha512: b4ac9b710ae4dc078595b112be82d402c97c2c097aa91519c88466572decc91f621f20e791e8f9c9d4525d629c77527e9daf1cbb128dd014980c0cd6910db01d
ssdeep: 24576:uVZEhxeZD6NWmWIX1hzrPcKzWAslaA8qe5KfvtPpSc/2+R:uceZeNWmWIzcKom5O/J/2+R
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

0: [No Data]

Ransom:Win32/Robbinhood.B!dha also known as:

BkavW32.AIDetect.malware1
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealRansom.Robbinhood
ALYacTrojan.GenericKD.37210105
CylanceUnsafe
ZillyaTrojan.Mucc.Win32.1252
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Robbinhood.74952a55
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.250a89
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.NUU
APEXMalicious
AvastWin32:Malware-gen
BitDefenderTrojan.GenericKD.37210105
NANO-AntivirusTrojan.Win32.Generic.fqujwq
MicroWorld-eScanTrojan.GenericKD.37210105
TencentWin32.Trojan.Filecoder.Aihm
Ad-AwareTrojan.GenericKD.37210105
SophosMal/Generic-S
ComodoPacked.Win32.MUPX.Gen@24tbus
BitDefenderThetaGen:NN.ZexaF.34790.ErW@aSEPzTb
TrendMicroRansom.Win32.JCRY.THFAOAI
McAfee-GW-EditionBehavesLike.Win32.Generic.tm
FireEyeGeneric.mg.e0821cfc268dcaec
EmsisoftTrojan.GenericKD.37210105 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Agent.bxsd
AviraHEUR/AGEN.1104224
Antiy-AVLTrojan/Generic.ASMalwS.2AD3B01
MicrosoftRansom:Win32/Robbinhood.B!dha
GDataTrojan.GenericKD.37210105
Acronissuspicious
McAfeeArtemis!E0821CFC268D
MAXmalware (ai score=99)
VBA32Trojan.Mucc
MalwarebytesMalware.AI.4247537234
TrendMicro-HouseCallRansom.Win32.JCRY.THFAOAI
IkarusTrojan.Mucc
FortinetW32/Filecoder.NUU!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HxMBEpsA

How to remove Ransom:Win32/Robbinhood.B!dha?

Ransom:Win32/Robbinhood.B!dha removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment