Virus

About “Virus:Win32/Luder.B” infection

Malware Removal

The Virus:Win32/Luder.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Virus:Win32/Luder.B virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Virus:Win32/Luder.B?


File Info:

name: 95DE579032266D0CFD95.mlw
path: /opt/CAPEv2/storage/binaries/5bd403ea840a70bde7209bfe51a7415b4df6f7ae3eeaf395606d003789cc65b2
crc32: 9E5C3293
md5: 95de579032266d0cfd955594d2b83508
sha1: 59fa6f33b63c704a09fd0ca43fc1a87998e88781
sha256: 5bd403ea840a70bde7209bfe51a7415b4df6f7ae3eeaf395606d003789cc65b2
sha512: 4f3180c21bf7335726b63d6057e213dfd38c39c4a2c44c2f05cacafeff94c9beb48401e372c7e32c69dad34edf2c26217a9f9b1d4c3692111e1bc7d391855ed1
ssdeep: 384:X+H81SBg1Z9XIZ0ReEb+PwELvnA6vi4SWqqWWW+:XEiSBgBvw7VBgSW+
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T14772C54067F8422CF0B30B31ADB526519BBBBD64AC74D74E8759441E1AB3B91CA78B33
sha3_384: d720666048e40fe50e474d9131eb7d65d3f5e43e801a302c1fb2642fe7839e1010cc7e491499dfcdc7c16609ec653d51
ep_bytes: 683a39000133d264ff3264892233c06a
timestamp: 2001-08-17 20:48:59

Version Info:

CompanyName: Microsoft Corporation
FileDescription: System Shutdown Utility
FileVersion: 5.1.2600.0 (xpclient.010817-1148)
InternalName: tsshutdn
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: tsshutdn.exe
ProductName: Microsoft® Windows® Operating System
ProductVersion: 5.1.2600.0
Translation: 0x0409 0x04b0

Virus:Win32/Luder.B also known as:

BkavW32.AIDetectMalware
LionicVirus.Win32.Texel.kYJD
Elasticmalicious (high confidence)
MicroWorld-eScanWin32.Luder.Gen
FireEyeWin32.Luder.Gen
CAT-QuickHealW32.Luder.B
SkyhighW32/WBoy.a.a
McAfeeW32/WBoy.a.a
Cylanceunsafe
VIPREWin32.Luder.Gen
SangforVirus.Win32.Luder.Vo16
K7AntiVirusVirus ( 0008d6fb1 )
AlibabaVirus:Win32/Luder.cdd208fc
K7GWVirus ( 0008d6fb1 )
BaiduWin32.Virus.Launcher.a
SymantecW32.Whybo!inf
ESET-NOD32Win32/Luder.Gen
APEXMalicious
ClamAVWin.Trojan.Luder-10
KasperskyVirus.Win32.Texel.k
BitDefenderWin32.Luder.Gen
NANO-AntivirusVirus.Win32.Texel.rdnn
AvastWin32:Luder [Wrm]
TencentVirus.Win32.Loader.td
SophosTroj/Luder-A
F-SecureMalware.W32/Texel.M
DrWebTrojan.Starter.171
ZillyaVirus.Texel.Win32.6
TrendMicroPE_LUDER.CH
EmsisoftWin32.Luder.Gen (B)
IkarusWin32.Luder
MAXmalware (ai score=100)
GDataWin32.Virus.Luder.A
JiangminWin32/Luder.a
WebrootW32.Luder.Gen
GoogleDetected
AviraW32/Texel.M
VaristW32/Heuristic-162!Eldorado
Antiy-AVLVirus/Win32.Texel.k
KingsoftWin32.Luder.f.147
XcitiumVirus.Win32.Texel.A@11xi56
ArcabitWin32.Luder.Gen
ViRobotWin32.Patched.A
ZoneAlarmVirus.Win32.Texel.k
MicrosoftVirus:Win32/Luder.B
CynetMalicious (score: 100)
AhnLab-V3Win32/Luder
BitDefenderThetaAI:FileInfector.56732E5F0F
ALYacWin32.Luder.Gen
TACHYONVirus/W32.Texel
VBA32Virus.Win32.Luder.B
PandaW32/Patchlog.L
TrendMicro-HouseCallPE_LUDER.CH
RisingWin32.KLdown.b (CLASSIC)
YandexTrojan.Starter.AH
MaxSecureVirus.Patched.BJ
FortinetW32/WBoy.A
AVGWin32:Luder [Wrm]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Virus:Win32/Luder.B?

Virus:Win32/Luder.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment