Ransom Trojan

How to remove “Trojan.RansomKD.6254774”?

Malware Removal

The Trojan.RansomKD.6254774 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.RansomKD.6254774 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.RansomKD.6254774?


File Info:

crc32: 2D72CCD7
md5: ab0a7175d56545b0070ecd8d8e7d2516
name: AB0A7175D56545B0070ECD8D8E7D2516.mlw
sha1: 0091a82a5fa653c583c5e0bdfc2f88f3d88098d0
sha256: cb436e329c115df0408bb0ec584265ce8e1c9bbdfb1ef3c5c79d93e05355488d
sha512: 4b4f0e2a8d6b2db1f46e9e730006b067515e0d4287b5023d18589318387dfb50d5e10f5c8481019b6ce0b28a55fb89373bb6ab7720e1e49ae2d46ebf204aa8b7
ssdeep: 3072:AIWGC7W7BuDcYzI+Wyct3QZPnLYL69mSdDmRF28Nd4CmBIHtL/MMBSys:uGC7W7BU2phYYNSmPT4LSHtL0MW
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Trojan.RansomKD.6254774 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0055e39b1 )
LionicTrojan.Win32.Purga.4!c
Elasticmalicious (high confidence)
DrWebTrojan.VbCrypt.150
CynetMalicious (score: 100)
ALYacTrojan.RansomKD.6254774
CylanceUnsafe
SangforHacktool.Win32.ObfuscatorGd.decblob
AlibabaRansom:Win32/Purga.1e26d742
K7GWTrojan ( 0055e39b1 )
Cybereasonmalicious.5d5654
SymantecTrojan.Gen.2
ESET-NOD32NSIS/Injector.ES
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Purga.p
BitDefenderTrojan.RansomKD.6254774
NANO-AntivirusTrojan.Dos.Code.egouws
MicroWorld-eScanTrojan.RansomKD.6254774
TencentWin32.Trojan.Purga.Llqw
Ad-AwareTrojan.RansomKD.6254774
SophosMal/Generic-S
ComodoMalware@#1wdmt8gmo00es
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_LOCKYENC.SMNS1
McAfee-GW-EditionBehavesLike.Win32.AdwareAdload.cc
FireEyeGeneric.mg.ab0a7175d56545b0
EmsisoftTrojan.RansomKD.6254774 (B)
SentinelOneStatic AI – Suspicious PE
AviraTR/Injector.sejzs
MicrosoftTrojan:Win32/Tiggre!rfn
ArcabitTrojan.RansomKD.D5F70B6
GDataTrojan.RansomKD.6254774
McAfeeArtemis!AB0A7175D565
MAXmalware (ai score=99)
VBA32suspected of Trojan.Downloader.gen
PandaTrj/CI.A
TrendMicro-HouseCallRansom_LOCKYENC.SMNS1
YandexTrojan.Agent!RZrKN1NCfYI
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.RansomKD.6254774?

Trojan.RansomKD.6254774 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment