Trojan

Should I remove “TrojanDownloader:Win32/Kanav.H”?

Malware Removal

The TrojanDownloader:Win32/Kanav.H is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Kanav.H virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Uses suspicious command line tools or Windows utilities

How to determine TrojanDownloader:Win32/Kanav.H?


File Info:

name: 354C14B05AE79476FC73.mlw
path: /opt/CAPEv2/storage/binaries/66f41bb103263199e34d9527907480b13a669797bcae42f2788082818b16265c
crc32: 26B45F18
md5: 354c14b05ae79476fc73bd8b28ac0c62
sha1: 17eeabccf1cd506e5b8c166e132cfe4247e9ced1
sha256: 66f41bb103263199e34d9527907480b13a669797bcae42f2788082818b16265c
sha512: a12d4f41ca3ea384775484f7a3978fbf53f81f4c3d48b39e44f85077493694081538db0be07bdd626c71e55fc843fd124a15d7d52085da48d4234e237a1c2e4b
ssdeep: 768:UlTgP2ANyLp5XIFbR0uY25BQkLJlwt7RMY:UlTA1NI3W95B9otlv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E8235B3B78C2C036CC5501B559B49B561F3F297203A0A983EF901E4A7E71AD79A3A24B
sha3_384: cfbb9969726cca002a3527dd28c47451add0ada75914077d88efbb7c8dd66d5ac31a454deaba65ee3792c17cea7541b9
ep_bytes: 558bec6aff68f870400068103a400064
timestamp: 2012-08-31 13:31:56

Version Info:

0: [No Data]

TrojanDownloader:Win32/Kanav.H also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Alyak.B3
McAfeePWS-OnlineGames.lq
MalwarebytesMalware.AI.695920401
VIPREGen:Variant.Fragtor.114364
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 0040516f1 )
BitDefenderGen:Variant.Fragtor.114364
K7GWTrojan ( 0040516f1 )
Cybereasonmalicious.05ae79
BaiduWin32.Trojan.Alyak.a
VirITTrojan.Win32.Agent3.BZNH
CyrenW32/Agent.QC.gen!Eldorado
SymantecDownloader.Bouncedoc
ESET-NOD32a variant of Win32/Alyak.A
APEXMalicious
ClamAVWin.Trojan.Agent-429088
KasperskyTrojan.Win32.Agent.tpsw
NANO-AntivirusTrojan.Win32.Agent.bbmbxs
SUPERAntiSpywareTrojan.Agent/Gen-Graftor
MicroWorld-eScanGen:Variant.Fragtor.114364
AvastWin32:Agent-APWI [Trj]
TencentMalware.Win32.Gencirc.10b14a98
EmsisoftGen:Variant.Fragtor.114364 (B)
F-SecureHeuristic.HEUR/AGEN.1345107
DrWebTrojan.DownLoader6.50598
ZillyaTrojan.Agent.Win32.267624
TrendMicroTROJ_ALYAK.SMAE
McAfee-GW-EditionBehavesLike.Win32.PWSOnlineGames.pt
FireEyeGeneric.mg.354c14b05ae79476
SophosML/PE-A
IkarusTrojan.Win32.Alyak
GDataGen:Variant.Fragtor.114364
JiangminTrojan/Agent.gjec
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1345107
Antiy-AVLTrojan/Win32.Agent
XcitiumTrojWare.Win32.Alyak.B@4q9cjn
ArcabitTrojan.Fragtor.D1BEBC
ViRobotTrojan.Win32.A.Agent.49169
ZoneAlarmTrojan.Win32.Agent.tpsw
MicrosoftTrojanDownloader:Win32/Kanav.H
GoogleDetected
AhnLab-V3Dropper/Win.OnlineGameHack.R543952
VBA32BScope.Trojan.Win32.Inject.2
ALYacGen:Variant.Fragtor.114364
MAXmalware (ai score=82)
Cylanceunsafe
PandaGeneric Malware
TrendMicro-HouseCallTROJ_ALYAK.SMAE
RisingDownloader.Kanav!1.9D49 (CLASSIC)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.TODU!tr
AVGWin32:Agent-APWI [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_90% (D)

How to remove TrojanDownloader:Win32/Kanav.H?

TrojanDownloader:Win32/Kanav.H removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment