Ransom Trojan

Trojan.RansomKD.12740859 removal

Malware Removal

The Trojan.RansomKD.12740859 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.RansomKD.12740859 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Sniffs keystrokes
  • Installs itself for autorun at Windows startup

Related domains:

lovetn.ddns.net

How to determine Trojan.RansomKD.12740859?


File Info:

crc32: 99931306
md5: 6547bac099a4feefdffc4a70d6a67bad
name: 6547BAC099A4FEEFDFFC4A70D6A67BAD.mlw
sha1: 58d59d0f896533fb767720166360074e4d670588
sha256: d5ad40104a1f8d55e313bb367a45bb6bddafa635483c9e9c7af77732b7a0399a
sha512: 85b1b8d8c38f6a72e64e5a7323324d9cfafbb9b902a15c6d6b55a42e51c1740208e657118aac0cb31a96552bb957e872b43162f05180807b0e259fdb5ee354fc
ssdeep: 1536:nQ8PgxS+shUlZ5vKEudv2ss8yAxG560OZ+26scvTan9Ji:nQ8vcDvKf2seAxGC42SW9Ji
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

0: [No Data]

Trojan.RansomKD.12740859 also known as:

K7AntiVirusTrojan ( 005235a71 )
LionicTrojan.Win32.Blocker.j!c
CynetMalicious (score: 99)
ALYacTrojan.RansomKD.12740859
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.1353186
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
K7GWTrojan ( 005235a71 )
Cybereasonmalicious.099a4f
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.FGA
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Blocker.idkh
BitDefenderTrojan.RansomKD.12740859
NANO-AntivirusTrojan.Win32.Blocker.exwhlb
MicroWorld-eScanTrojan.RansomKD.12740859
TencentWin32.Trojan.Bp-autorun.Zclz
Ad-AwareTrojan.RansomKD.12740859
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34170.em0@a8bXm6
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.lh
FireEyeGeneric.mg.6547bac099a4feef
EmsisoftTrojan.RansomKD.12740859 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Blocker.idp
AviraHEUR/AGEN.1122176
eGambitUnsafe.AI_Score_100%
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftBackdoor:MSIL/Bladabindi
ArcabitTrojan.RansomKD.DC268FB
GDataTrojan.RansomKD.12740859
McAfeeArtemis!6547BAC099A4
MAXmalware (ai score=87)
VBA32Trojan-Ransom.Blocker
MalwarebytesMachineLearning/Anomalous.95%
PandaTrj/GdSda.A
YandexTrojan.Blocker!yHX6MNqAubU
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Blocker.FGA!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.RansomKD.12740859?

Trojan.RansomKD.12740859 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment