Ransom Trojan

Should I remove “Trojan-Ransom.Win32.Shade.rd”?

Malware Removal

The Trojan-Ransom.Win32.Shade.rd is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.Win32.Shade.rd virus can do?

  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX

How to determine Trojan-Ransom.Win32.Shade.rd?


File Info:

crc32: D1CCCAA5
md5: 8ef40fcb35d7537105317f932e938dff
name: 8EF40FCB35D7537105317F932E938DFF.mlw
sha1: 009c0e5d0a45d09aa118b43dca0d5d88b38e731a
sha256: 4095b603eff4db21e51f890119702a6b8a226ff06680366e03c97fd934421e9a
sha512: 58381a4177b71b2b59aba5c2f64b961bc5dca5d79a573ff781ed6cbcafc92c5736424b31d54a4d72a71ed5f28e082cf01f29fedccba5f6297b4aa8507e9a1e54
ssdeep: 6144:bllAXzGFAxo4NEsBU/M3FAFrSyVLNcKHepoS:LADw4okDGtVLNJ2oS
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Trojan-Ransom.Win32.Shade.rd also known as:

BkavW32.AIDetect.malware1
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.1018
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.2241447
CylanceUnsafe
ZillyaTrojan.Shade.Win32.153
SangforRansom.Win32.Troldesh.A
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaRansom:Win32/Shade.f606b3af
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.b35d75
BaiduWin32.Trojan.FileCoder.b
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.Shade.A
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Shade.rd
BitDefenderTrojan.GenericKD.2241447
NANO-AntivirusTrojan.Win32.Shade.drfgsm
MicroWorld-eScanTrojan.GenericKD.2241447
TencentWin32.Trojan.Shade.Egoq
Ad-AwareTrojan.GenericKD.2241447
SophosMal/Generic-S
ComodoMalware@#2dzcdz4zatt4p
BitDefenderThetaGen:NN.ZexaF.34608.mmGfa4ILCekc
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.dc
FireEyeGeneric.mg.8ef40fcb35d75371
EmsisoftTrojan.GenericKD.2241447 (B)
WebrootW32.Trojan.Genkd
eGambitUnsafe.AI_Score_99%
MicrosoftRansom:Win32/Troldesh.A
ArcabitTrojan.Generic.D2233A7
AegisLabTrojan.Win32.Shade.toS4
GDataTrojan.GenericKD.2241447
TACHYONRansom/W32.Shade.486400
McAfeeArtemis!8EF40FCB35D7
VBA32TrojanRansom.Shade
MalwarebytesMalware.Heuristic.1003
PandaTrj/CI.A
RisingRansom.Shade!8.12CC (CLOUD)
YandexTrojan.GenAsa!g96vjKcTJgI
IkarusTrojan-Ransom.Troldesh
FortinetW32/Shade.RD!tr
AVGWin32:Malware-gen
Qihoo-360Win32/Ransom.Shade.HgIASOkA

How to remove Trojan-Ransom.Win32.Shade.rd?

Trojan-Ransom.Win32.Shade.rd removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment