Malware

Troj/Luder-A information

Malware Removal

The Troj/Luder-A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Troj/Luder-A virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Troj/Luder-A?


File Info:

name: CFF0EF29F54526B8C119.mlw
path: /opt/CAPEv2/storage/binaries/12c7b01e32c1524defadeb6e07d737bbc71bf42d376d53fcaa0ce299e0ed3703
crc32: 6E9F94D0
md5: cff0ef29f54526b8c1198f0844ae8beb
sha1: 543ab0a9d668e501dd47a9949dcf3154ef953e68
sha256: 12c7b01e32c1524defadeb6e07d737bbc71bf42d376d53fcaa0ce299e0ed3703
sha512: b66e6a85410d66d89520347cbb893f842ee467e2b4c05987b54dfb9583e9730173300b27d4b804772b248d5c0e6c64badf3aba226416f8088a1cffdebfe0db7e
ssdeep: 1536:sZEpBzANAzhrZ5A6666666666666666666666666GkBi7+:sZELANABZ5U+O+
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T126B3735273019458D34C07318843EBF85969AC7969948A2FFAF4BF3FBC316536A131AE
sha3_384: 6da82c6d80c02f5a60aa816c10118c93072cb7e978f13782305c0b25815df3d6594c9294f2adb915afeacd9e22f7c382
ep_bytes: 68e814000133c964ff3164892133d26a
timestamp: 2004-08-04 06:09:56

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Program Manager
FileVersion: 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
InternalName: progman
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: PROGMAN.EXE
ProductName: Microsoft® Windows® Operating System
ProductVersion: 5.1.2600.2180
Translation: 0x0409 0x04b0

Troj/Luder-A also known as:

BkavW32.Common.95FC3A89
LionicVirus.Win32.Texel.kYJD
AVGWin32:Luder [Wrm]
Elasticmalicious (high confidence)
MicroWorld-eScanWin32.Luder.Gen
FireEyeWin32.Luder.Gen
CAT-QuickHealW32.Luder.B
SkyhighW32/WBoy.a.a
McAfeeW32/WBoy.a.a
Cylanceunsafe
ZillyaVirus.Texel.Win32.6
SangforVirus.Win32.Luder.V3ci
K7AntiVirusVirus ( 0008d6fb1 )
AlibabaVirus:Win32/Luder.82da39cc
K7GWVirus ( 0008d6fb1 )
BitDefenderThetaAI:FileInfector.56732E5F0F
Paloaltogeneric.ml
SymantecW32.Whybo!inf
ESET-NOD32Win32/Luder.Gen
CynetMalicious (score: 99)
AvastWin32:Luder [Wrm]
ClamAVWin.Trojan.Luder-18
KasperskyVirus.Win32.Texel.k
BitDefenderWin32.Luder.Gen
NANO-AntivirusVirus.Win32.Texel.rdnn
TencentVirus.Win32.Patched.abc
EmsisoftWin32.Luder.Gen (B)
BaiduWin32.Virus.Launcher.a
F-SecureTrojan.TR/Luder.Patched.84
DrWebTrojan.Starter.171
VIPREWin32.Luder.Gen
TrendMicroPE_LUDER.CH
SophosTroj/Luder-A
IkarusTrojan.Win32.Patched
GDataWin32.Virus.Luder.A
JiangminWin32/Luder.a
AviraTR/Luder.Patched.84
Antiy-AVLVirus/Win32.Texel.k
KingsoftWin32.Luder.f.147
XcitiumVirus.Win32.Texel.B@14bbzz
ArcabitWin32.Luder.Gen
ViRobotWin32.Patched.A
ZoneAlarmVirus.Win32.Texel.k
MicrosoftVirus:Win32/Luder.B
GoogleDetected
AhnLab-V3Win32/Luder
VBA32Virus.Win32.Luder.B
ALYacWin32.Luder.Gen
TACHYONVirus/W32.Texel
MalwarebytesGeneric.Malware/Suspicious
PandaW32/Patchlog.L
TrendMicro-HouseCallPE_LUDER.CH
RisingWin32.Iuhzu.a (CLASSIC)
YandexTrojan.Starter.AH
MAXmalware (ai score=100)
MaxSecureVirus.Patched.BJ
FortinetW32/WBoy.A
DeepInstinctMALICIOUS
alibabacloudVirus:Win/Luder.Gen

How to remove Troj/Luder-A?

Troj/Luder-A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment