Ransom Trojan

Should I remove “Trojan-Ransom.Win32.Shade.pgd”?

Malware Removal

The Trojan-Ransom.Win32.Shade.pgd is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Shade.pgd virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Installs itself for autorun at Windows startup
  • Collects information about installed applications
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Trojan-Ransom.Win32.Shade.pgd?


File Info:

crc32: D35EB83B
md5: 644a0fa49064b97023ac6564c1770083
name: sserv.jpg
sha1: 0982033c7108d27818d6ee0572a0c328d1bbecd4
sha256: 7701170304fdd48b184aac032391ae3a1f880be6160812d0089049834b3ec828
sha512: cbce70406bfa99c33a9640233e503d22d5c9e6a53fa9916aa47f64a103e96bde4fded2d6e2c0ac1a00e5af853cedd865483a6e8f66b3633a8c96245e0bc5483e
ssdeep: 24576:UlTshPoDiXbNSXIN6L/Y1ja1zwdY4k2A/QaFcEYZFG:UshPjNSXGic+FwTbA4SR9
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Shade.pgd also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.31428312
FireEyeGeneric.mg.644a0fa49064b970
CAT-QuickHealTrojan.Troldesh
ALYacTrojan.Ransom.Shade
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 004b8aa51 )
BitDefenderTrojan.GenericKD.31428312
K7GWTrojan ( 004b8aa51 )
CrowdStrikewin/malicious_confidence_100% (W)
TrendMicroRansom.Win32.CRYPSHED.BABAL
BitDefenderThetaGen:NN.ZexaF.34254.dnX@aqs6vE
CyrenW32/Injector.GXHJ-5611
SymantecPacked.Generic.459
ESET-NOD32Win32/Filecoder.Shade.A
TrendMicro-HouseCallRansom.Win32.CRYPSHED.BABAL
AvastWin32:Malware-gen
ClamAVWin.Malware.Score-9660437-0
KasperskyTrojan-Ransom.Win32.Shade.pgd
AlibabaTrojan:Win32/Shade.0aed264d
NANO-AntivirusTrojan.Win32.Filecoder.fljzpc
ViRobotTrojan.Win32.Ransom.1104648
AegisLabTrojan.Win32.Shade.tpKh
Ad-AwareTrojan.GenericKD.31428312
EmsisoftTrojan.GenericKD.31428312 (B)
ComodoMalware@#bqfqfm5uqnns
F-SecureTrojan.TR/BAS.Samca.qydfv
DrWebTrojan.Encoder.858
ZillyaTrojan.Shade.Win32.929
InvinceaMal/Generic-R + Mal/Cerber-AL
McAfee-GW-EditionGeneric.bum
SentinelOneDFI – Malicious PE
SophosMal/Cerber-AL
APEXMalicious
JiangminTrojan.Banker.Chthonic.cv
WebrootW32.Trojan.Gen
AviraTR/BAS.Samca.qydfv
Antiy-AVLTrojan[Ransom]/Win32.Shade
MicrosoftTrojan:Win32/CryptInject
ArcabitTrojan.Generic.D1DF8ED8
AhnLab-V3Trojan/Win32.Injector.R249886
ZoneAlarmTrojan-Ransom.Win32.Shade.pgd
GDataWin32.Trojan-Ransom.Shade.EJOFCH
CynetMalicious (score: 100)
Acronissuspicious
McAfeeGeneric.bum
MAXmalware (ai score=100)
VBA32BScope.TrojanPSW.Papras
MalwarebytesRansom.Troldesh
PandaTrj/WLT.E
ZonerTrojan.Win32.75156
RisingRansom.Shade!8.12CC (KTSE)
YandexTrojan.Shade!
IkarusTrojan-Ransom.Crypted007
eGambitPE.Heur.InvalidSig
FortinetW32/Shade.ED!tr
AVGWin32:Malware-gen
Cybereasonmalicious.49064b
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Ransom.e4a

How to remove Trojan-Ransom.Win32.Shade.pgd?

Trojan-Ransom.Win32.Shade.pgd removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment