Ransom Trojan

Trojan-Ransom.Win32.Shade.lfz removal tips

Malware Removal

The Trojan-Ransom.Win32.Shade.lfz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Shade.lfz virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan-Ransom.Win32.Shade.lfz?


File Info:

crc32: 4EF30D8C
md5: 92e413c0f5b2570e78c9e70863193c86
name: 92E413C0F5B2570E78C9E70863193C86.mlw
sha1: 5596bffd48775eba7fd352e42fd3d39e9878a371
sha256: 19bfcef1472c6462f91b2b3878f28130dc62ebfd632b1026901962ff6a79fbb0
sha512: a3de049dd4730abc507c33dbcef087145cf5b454974d50c20bce91a2213d64bd6fa034671070a8bdd10ee386c52a468a02187e7ce81e683949994082fc401496
ssdeep: 24576:wVKetXzOqKA2qTLTw1M0cOTMZ30YAAeOuA/Dy:RetXguaLpTMx0YveSry
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

FileVersion: 1.0.1.3
Translation: 0x0409 0x0000

Trojan-Ransom.Win32.Shade.lfz also known as:

K7AntiVirusTrojan ( 0055e3ef1 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader23.25165
CynetMalicious (score: 99)
CAT-QuickHealRansom.Cerber.B
ALYacTrojan.GenericKD.3804605
CylanceUnsafe
SangforRansom.Win32.Shade.lfz
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaRansom:Win32/Shade.2c917373
K7GWTrojan ( 0055e3ef1 )
Cybereasonmalicious.0f5b25
SymantecPacked.NSISPacker!g2
ESET-NOD32Win32/Filecoder.Shade.B
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan-Ransom.Win32.Shade.lfz
BitDefenderTrojan.GenericKD.3804605
NANO-AntivirusTrojan.Win32.Shade.ejektr
MicroWorld-eScanTrojan.GenericKD.3804605
TencentWin32.Trojan.Shade.Hupg
Ad-AwareTrojan.GenericKD.3804605
SophosGeneric ML PUA (PUA)
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Browser.dc
FireEyeGeneric.mg.92e413c0f5b2570e
EmsisoftTrojan.GenericKD.3804605 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.Gen
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftRansom:Win32/Ranscrape
ArcabitTrojan.Generic.D3A0DBD
ZoneAlarmTrojan-Ransom.Win32.Shade.lfz
GDataTrojan.GenericKD.3804605
TACHYONRansom/W32.Shade.941514
AhnLab-V3Trojan/Win32.Cerber.C1689911
McAfeeArtemis!92E413C0F5B2
MAXmalware (ai score=100)
PandaTrj/Genetic.gen
FortinetW32/Injector.LC!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.Shade.lfz?

Trojan-Ransom.Win32.Shade.lfz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment