Trojan

What is “Trojan:Win32/Redosdru.C”?

Malware Removal

The Trojan:Win32/Redosdru.C is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Redosdru.C virus can do?

  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan:Win32/Redosdru.C?


File Info:

crc32: BD558CD0
md5: d2e9d0cd7d6dcea53328f9eb4d699725
name: D2E9D0CD7D6DCEA53328F9EB4D699725.mlw
sha1: ad743988a4558da1183c480b2899d70fda81935c
sha256: 2137ff12ade8a2ee5a3ec88513429bcdb54465667f8d766e613dad1d2457bec1
sha512: 8af0542dfa0ade095473b0eec0ccc81632f710f5810712e6bbf0b0f892385d47b72715a7c1209a01aaae7a4c2904aa3a2aefdb9ef11b27e92c8e06a955af6748
ssdeep: 3072:2U2bq/SyBeAnB6inWlrwoBAKWXmuYwbre:2rbq/SyB1nB6iWGo6FGwbS
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/Redosdru.C also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005181211 )
Elasticmalicious (high confidence)
DrWebTrojan.Inject1.4588
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Aksula.A
ALYacGen:Variant.Symmi.2871
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/Redosdru.2095d6aa
K7GWTrojan ( 005181211 )
Cybereasonmalicious.d7d6dc
BaiduWin32.Trojan.Farfli.ai
CyrenW32/InfoStealer.G.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Dialer.NEW
APEXMalicious
AvastWin32:Agent-BADD [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Symmi.2871
NANO-AntivirusTrojan.Win32.TrjGen.dfazfw
MicroWorld-eScanGen:Variant.Symmi.2871
TencentBackdoor.Win32.Gh0st.g
Ad-AwareGen:Variant.Symmi.2871
SophosML/PE-A + Troj/Farfli-Gen
ComodoTrojWare.Win32.Agent.~CAI@1ikid
BitDefenderThetaAI:Packer.4A70F4701F
VIPRETrojan.Win32.Redosdru.C (v)
TrendMicroBKDR_ZEGOST.SMO
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.cm
FireEyeGeneric.mg.d2e9d0cd7d6dcea5
EmsisoftGen:Variant.Symmi.2871 (B)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor/GhostVoice.ft
AviraTR/Spy.Gen
Antiy-AVLTrojan/Generic.ASMalwS.27D1026
KingsoftHeur.SSC.2681123.1216.(kcloud)
MicrosoftTrojan:Win32/Redosdru.C
GDataGen:Variant.Symmi.2871
TACHYONTrojan/W32.MMM.112640
AhnLab-V3Backdoor/Win32.Ressdt.R74
Acronissuspicious
McAfeeBackDoor-DVB.gen.s
MAXmalware (ai score=82)
VBA32BScope.Trojan.SvcHorse.01643
MalwarebytesMalware.AI.4142352134
PandaTrj/Gamania.ML
TrendMicro-HouseCallBKDR_ZEGOST.SMO
RisingTrojan.Win32.Nodef.kvq (CLASSIC)
YandexTrojan.GenAsa!shRPTLlYyGc
IkarusBackdoor.Win32.FirstInj
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Generic.AC.3167!tr
AVGWin32:Agent-BADD [Trj]
Paloaltogeneric.ml

How to remove Trojan:Win32/Redosdru.C?

Trojan:Win32/Redosdru.C removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment