Ransom Trojan

How to remove “Trojan.RansomKD.5631918 (B)”?

Malware Removal

The Trojan.RansomKD.5631918 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.RansomKD.5631918 (B) virus can do?

  • Anomalous binary characteristics

How to determine Trojan.RansomKD.5631918 (B)?


File Info:

crc32: DE284C60
md5: cc75247af5ead3bc45b95c6b224d98e7
name: CC75247AF5EAD3BC45B95C6B224D98E7.mlw
sha1: 82d414c4e16954e89f694321bd4f3a2dd697bf06
sha256: 7d2ae10253ecfded87feef60cf3d1e9bb6e9c7415637ac8b8cba2fcf792294d7
sha512: 1b4c1a2fe7c2e1e79cdd30ace9fc69b024e0a35854189c905c7f3ca208663f20671cb43231633416dddd1e0668e329c59b79916ade1cbc10630de107394bd0d9
ssdeep: 24576:p0P1Updfxq63DpcKx4VDS9pYN/hlnagISNHch/NTmh:9pRs63Dphx0u9EplnafSNHch/Nmh
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

InternalName: is sent for
FileDescription: The duke's in
FileVersion: 6.13.589.6923
ProductVersion: 6.13.589.6923
CompanyName: I am sure
Translation: 0x0409 0x04b0

Trojan.RansomKD.5631918 (B) also known as:

K7AntiVirusAdware ( 0050d6ea1 )
Elasticmalicious (high confidence)
DrWebTrojan.StartPage1.42106
CynetMalicious (score: 100)
ALYacTrojan.RansomKD.5631918
MalwarebytesAdware.HPDefender
ZillyaAdware.ICLoader.Win32.9296
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
Cybereasonmalicious.af5ead
SymantecML.Attribute.HighConfidence
ESET-NOD32multiple detections
APEXMalicious
AvastWin32:Evo-gen [Susp]
Kasperskynot-a-virus:HEUR:AdWare.Win32.Generic
BitDefenderTrojan.RansomKD.5631918
NANO-AntivirusRiskware.Win32.HPDefender.eoznpw
MicroWorld-eScanTrojan.RansomKD.5631918
TencentWin32.Adware.Icloader.Taor
Ad-AwareTrojan.RansomKD.5631918
SophosGeneric PUA IC (PUA)
ComodoMalware@#3prb8yyas1kqk
BitDefenderThetaGen:NN.ZexaF.34670.yy0@aGvEmcai
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PAK21
McAfee-GW-EditionBehavesLike.Win32.ICLoader.fc
FireEyeGeneric.mg.cc75247af5ead3bc
EmsisoftTrojan.RansomKD.5631918 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1117985
ArcabitTrojan.RansomKD.D55EFAE
GDataTrojan.RansomKD.5631918
AhnLab-V3PUP/Win32.Helper.R200852
McAfeeICLoader
MAXmalware (ai score=81)
VBA32Adware.ICLoader
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0PAK21
RisingMalware.Heuristic!ET#94% (CLOUD)
YandexPUA.HPDefender!QbEUiBHZcY4
IkarusPUA.HPDefender
FortinetRiskware/HPDefender
AVGWin32:Evo-gen [Susp]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HyoDEpsA

How to remove Trojan.RansomKD.5631918 (B)?

Trojan.RansomKD.5631918 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment