Virus

Virus:Win32/Luder.B removal tips

Malware Removal

The Virus:Win32/Luder.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Virus:Win32/Luder.B virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Virus:Win32/Luder.B?


File Info:

name: A43133FA1F76EA72072A.mlw
path: /opt/CAPEv2/storage/binaries/76217119a7309a0b92dc04858e9fa95bb9a267b5c0599ef041ef1a88af659419
crc32: CFD67105
md5: a43133fa1f76ea72072acebf337750be
sha1: 80c4d5b911eec751d3dd1f7ba71e81ac554b2cf2
sha256: 76217119a7309a0b92dc04858e9fa95bb9a267b5c0599ef041ef1a88af659419
sha512: fe045dfdc50f4baf56cc3c710a3b66d5af07993f645cd8e0e995589895960f4be6f8a7fc05fffd7bdc9bf0d5f5b714be62d99dedb3450526a58028784dac9c84
ssdeep: 768:qQg66T8v3dpKNTJlodcRK1akGXrGRh5IHMbXT45xbGT:FgrwfETYIKGXaNamD4Tb
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19933196177E8841EE1F21E3199B9573152B9BC211D3CEB4E0358B52F1E72BA2D935323
sha3_384: 3a0db855c00a7e84d254446c0d04a45e476cd2c7d35f1dbad8a1dfbe05b72e8ed65e9ea260a422fd4cbc80019f62efeb
ep_bytes: 681e6d000133d264ff3264892233d26a
timestamp: 2001-08-17 20:55:48

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Remote Access Phonebook
FileVersion: 5.1.2600.0 (xpclient.010817-1148)
InternalName: rasphone.exe
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: rasphone.exe
ProductName: Microsoft® Windows® Operating System
ProductVersion: 5.1.2600.0
Translation: 0x0409 0x04b0

Virus:Win32/Luder.B also known as:

DrWebTrojan.Starter.1054
MicroWorld-eScanWin32.Luder.Gen
FireEyeWin32.Luder.Gen
CAT-QuickHealW32.Luder.B
SkyhighW32/WBoy.a.a
McAfeeW32/WBoy.a.a
Cylanceunsafe
VIPREWin32.Luder.Gen
CrowdStrikewin/malicious_confidence_90% (D)
AlibabaTrojan:Win32/Luder.af89df77
K7GWVirus ( 0008d6fb1 )
K7AntiVirusVirus ( 0008d6fb1 )
BitDefenderThetaAI:FileInfector.56732E5F0F
SymantecW32.Whybo!inf
Elasticmalicious (high confidence)
ESET-NOD32Win32/Patched.A
APEXMalicious
ClamAVWin.Trojan.Luder-10
KasperskyTrojan.Win32.Patched.bj
BitDefenderWin32.Luder.Gen
NANO-AntivirusVirus.Win32.Texel.rdnn
AvastWin32:Luder [Wrm]
TencentVirus.Win32.Patched.abc
TACHYONVirus/W32.Texel
EmsisoftWin32.Luder.Gen (B)
F-SecureTrojan.TR/Luder.Patched.Mod
BaiduWin32.Virus.Launcher.a
TrendMicroPE_LUDER.CH
SophosTroj/Luder-A
IkarusTrojan.Win32.Patched
GDataWin32.Virus.Luder.A
JiangminWin32/Luder.a
VaristW32/Heuristic-162!Eldorado
AviraTR/Luder.Patched.Mod
Antiy-AVLVirus/Win32.Texel.k
KingsoftWin32.Luder.f.147
XcitiumVirus.Win32.Texel.B@14bbzz
ArcabitWin32.Luder.Gen
ViRobotWin32.Patched.A
ZoneAlarmTrojan.Win32.Patched.bj
MicrosoftVirus:Win32/Luder.B
CynetMalicious (score: 100)
AhnLab-V3Win32/Luder
VBA32Virus.Win32.Luder.B
ALYacWin32.Luder.Gen
MAXmalware (ai score=100)
PandaW32/Patchlog.L
TrendMicro-HouseCallPE_LUDER.CH
RisingWin32.Iuhzu.a (CLASSIC)
YandexTrojan.Starter.AH
MaxSecureVirus.Patched.BJ
FortinetW32/WBoy.A
AVGWin32:Luder [Wrm]
DeepInstinctMALICIOUS

How to remove Virus:Win32/Luder.B?

Virus:Win32/Luder.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment