Trojan

About “Trojan:Win32/Letdater” infection

Malware Removal

The Trojan:Win32/Letdater is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Letdater virus can do?

  • Presents an Authenticode digital signature
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan:Win32/Letdater?


File Info:

crc32: CFF7BEFB
md5: b054a7382adf6b774b15f52d971f3799
name: B054A7382ADF6B774B15F52D971F3799.mlw
sha1: b4d43cd2d81d17dec523915c0fc61b4b29e62c58
sha256: bdff852398f174e9eef1db1c2d3fefdda25fe0ea90a40a2e06e51b5c0ebd69eb
sha512: 7c307a2ed0e6e483a0f3e7161ff0433e6bd498ab0b14b5359a938554999b076c4143a766b96c05dc0b949948cac97d81534ceb1300d02276ec90e2c1162383a9
ssdeep: 1536:XN9cIi98pUYi7tIP+arPg1ssvpoOJwtFT6BxdYIHs/5mBS0LiF:99clzLPPBoOJwWBxdYlxySr
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/Letdater also known as:

MicroWorld-eScanTrojan.GenericKD.40404380
FireEyeGeneric.mg.b054a7382adf6b77
ALYacTrojan.Downloader.Agent.9827840
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Agent.a!c
SangforTrojan.Win32.Agent.jlhae
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.40404380
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.82adf6
SymantecTrojan Horse
AvastWin32:Adware-gen [Adw]
ClamAVWin.Spyware.Fallchill-6663754-2
KasperskyTrojan-Downloader.Win32.Agent.xxygda
AlibabaTrojanDownloader:Win32/Letdater.c0b37dd9
NANO-AntivirusTrojan.Win32.Letscool.fflqoo
ViRobotTrojan.Win32.S.Agent.173224
RisingDownloader.Agent!8.B23 (CLOUD)
Ad-AwareTrojan.GenericKD.40404380
SophosMal/Generic-R + Troj/NukeSped-Y
ComodoMalware@#3ue4j26zm4gey
F-SecureTrojan.TR/AD.APT26C.ichjf
DrWebAdware.Letscool.origin
ZillyaDownloader.Agent.Win32.365188
TrendMicroTrojan.Win32.APPLEJEUS.AA.tmsr
McAfee-GW-EditionGeneric trojan.d
EmsisoftTrojan.GenericKD.40404380 (B)
IkarusTrojan-Downloader.Agent
JiangminTrojanDownloader.Agent.fvaw
eGambitUnsafe.AI_Score_85%
AviraTR/AD.APT26C.ichjf
Antiy-AVLTrojan[Downloader]/Win32.Agent
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Letdater
GridinsoftTrojan.Win32.Downloader.sa
ArcabitTrojan.Generic.D268859C
ZoneAlarmTrojan-Downloader.Win32.Agent.xxygda
GDataTrojan.GenericKD.40404380
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.R235133
McAfeeGeneric .d
MAXmalware (ai score=100)
VBA32TrojanDownloader.Agent
MalwarebytesTrojan.Agent.Jeus
PandaTrj/CI.A
ESET-NOD32Win32/TrojanDownloader.NukeSped.E
TrendMicro-HouseCallTrojan.Win32.APPLEJEUS.AA.tmsr
TencentWin32.Trojan-downloader.Agent.Pcie
YandexTrojan.DL.Agent!p1gsHcl4rL0
SentinelOneStatic AI – Suspicious PE
FortinetW32/Agent.XXYGDA!tr.dldr
WebrootW32.Trojan.Gen
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Trojan.43c

How to remove Trojan:Win32/Letdater?

Trojan:Win32/Letdater removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment