Ransom Trojan

Trojan-Ransom.Win32.Shade.nvv information

Malware Removal

The Trojan-Ransom.Win32.Shade.nvv is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Shade.nvv virus can do?

  • Unconventionial language used in binary resources: Danish
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Trojan-Ransom.Win32.Shade.nvv?


File Info:

crc32: 1036D3BB
md5: 40a39ed2e34c731143a06d4b4ebb7b5f
name: 40A39ED2E34C731143A06D4B4EBB7B5F.mlw
sha1: 38117e525f87555c942e1d4138ec167ac1407502
sha256: 56468cf9899b3b855d9f33c0be79a325605f9ebe51e839e00b0752c181df7bc1
sha512: 9e9c6a11e16202ea221e84a8a59dcc78344683e846e58d855b4379ffeada80122222ce04edb4652c224d0713f9cf0f3c118b76df95e7e369d7cb903da4b592c8
ssdeep: 12288:7otNfrxRuOapJrLQT2neFqlDxnj122h9wEsZTlFLapNA9CurPr/P4XRemL002bj:mRuOaJn/UqNx8CiZpdaj8C0AwNa2a
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Shade.nvv also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0056e90d1 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.10507
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.5604018
CylanceUnsafe
ZillyaTrojan.Shade.Win32.626
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (D)
AlibabaRansom:Win32/Shade.50bf0a9b
K7GWTrojan ( 0056e90d1 )
Cybereasonmalicious.2e34c7
SymantecRansom.Troldesh
ESET-NOD32Win32/Filecoder.Shade.B
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Shade.nvv
BitDefenderTrojan.GenericKD.5604018
NANO-AntivirusTrojan.Win32.Shade.eqxdno
MicroWorld-eScanTrojan.GenericKD.5604018
Ad-AwareTrojan.GenericKD.5604018
SophosMal/Generic-S + Mal/Kryptik-DC
ComodoMalware@#jctibtzkelue
BitDefenderThetaGen:NN.ZexaF.34738.cvW@aipdGSfG
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.TrojanAitInject.tc
FireEyeGeneric.mg.40a39ed2e34c7311
EmsisoftTrojan.GenericKD.5604018 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1128669
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.3100D15
MicrosoftRansom:Win32/Troldesh.A
ArcabitTrojan.Generic.D5582B2
AegisLabTrojan.Win32.Generic.4!c
GDataTrojan.GenericKD.5604018
AhnLab-V3Trojan/Win32.Shade.C2040651
Acronissuspicious
McAfeeArtemis!40A39ED2E34C
MAXmalware (ai score=83)
VBA32BScope.TrojanRansom.Shade
MalwarebytesMachineLearning/Anomalous.100%
PandaTrj/Genetic.gen
RisingTrojan.Generic@ML.94 (RDML:AIwlz6htd3o3WqmylNZlSw)
YandexTrojan.Shade!gtNvfqTd9S8
IkarusTrojan-Ransom.Agent
FortinetW32/Shade.NVV!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan-Ransom.Win32.Shade.nvv?

Trojan-Ransom.Win32.Shade.nvv removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment