Categories: Trojan

Should I remove “Dropped:Trojan.Honkey.A”?

The Dropped:Trojan.Honkey.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Dropped:Trojan.Honkey.A virus can do?

  • Executable code extraction
  • Attempts to modify Internet Explorer’s start page
  • A process attempted to delay the analysis task by a long amount of time.
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Attempts to identify installed AV products by installation directory
  • Anomalous binary characteristics
  • Attempts to modify Explorer settings to prevent hidden files from being displayed
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Dropped:Trojan.Honkey.A?


File Info:

crc32: BD9B45DBmd5: 2b32f6c9d7d55fc82eba8e70d2b95e84name: 2B32F6C9D7D55FC82EBA8E70D2B95E84.mlwsha1: b42c83d418dadf5c0f1ae288eceee28c5bb38ceesha256: b2a8c73b2dda0ddb9a07b16ab87dfd1f1d95bafbcae7ce17f3bf373cd406ff84sha512: 4f61164f74d68022b9123271813ee5971d01db9542a69960f59c7775192f3aca696eba5f15620c503e4a52519abcbfd9bc1cad556cf3f50d8c509e933029bbc7ssdeep: 1536:JyH3DOFY/XANrkXiMDxxPlvryZvcABKSoeuhHdK8:23DOCAN4XFxtDyZv0neuh9type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0LegalCopyright: Th4Nks f0r 4llInternalName: HoneyFileVersion: 5.11.0005CompanyName: Comments: Thi5 i5 f0r my g1rLFr13Nd.ProductName: WindowsProductVersion: 5.11.0005OriginalFilename: Honey.exe

Dropped:Trojan.Honkey.A also known as:

K7AntiVirus EmailWorm ( 0004aec41 )
DrWeb Trojan.StartPage.55799
Cynet Malicious (score: 100)
CMC Generic.Win32.2b32f6c9d7!CMCRadar
ALYac Dropped:Trojan.Honkey.A
Cylance Unsafe
Zillya Trojan.Blocker.Win32.34699
Sangfor Trojan.Win32.Save.a
Alibaba Ransom:Win32/Blocker.5335452b
K7GW EmailWorm ( 0004aec41 )
Cybereason malicious.9d7d55
Symantec ML.Attribute.HighConfidence
APEX Malicious
Avast Win32:Trojan-gen
ClamAV Win.Dropper.Honkey-9813039-0
Kaspersky Trojan-Ransom.Win32.Blocker.hgkd
BitDefender Dropped:Trojan.Honkey.A
NANO-Antivirus Trojan.Win32.Delf.onhk
MicroWorld-eScan Dropped:Trojan.Honkey.A
Tencent Win32.Trojan.Blocker.Hrfe
Ad-Aware Dropped:Trojan.Honkey.A
Sophos Mal/Generic-R + W32/Autorun-AMX
Comodo Suspicious@#30cm42ua6bi0u
BitDefenderTheta AI:Packer.E0F800061D
VIPRE Trojan.Win32.Generic.pak!cobra
McAfee-GW-Edition W32/Generic.worm!p2p.c
FireEye Generic.mg.2b32f6c9d7d55fc8
Emsisoft Dropped:Trojan.Honkey.A (B)
SentinelOne Static AI – Malicious PE
Jiangmin Worm/Delf.ace
eGambit Generic.Dropper
Antiy-AVL Trojan/Generic.ASMalwS.183FB9B
Microsoft Worm:Win32/Dynamer!ac
Arcabit Trojan.Honkey.A
AegisLab Trojan.Win32.Blocker.j!c
ZoneAlarm Trojan-Ransom.Win32.Blocker.hgkd
GData Dropped:Trojan.Honkey.A
AhnLab-V3 Dropper/Win32.VB.C12140
McAfee W32/Generic.worm!p2p.c
MAX malware (ai score=100)
VBA32 Worm.Delf
Panda Generic Malware
Rising Malware.FakeFolder/ICON!1.6AA9 (CLASSIC)
Yandex Worm.Delf!lkVm+QeTxww
Ikarus Trojan.NewHeur_VB_Backdoor
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/Blocker.AMX!tr
AVG Win32:Trojan-gen
Paloalto generic.ml
Qihoo-360 Win32/Ransom.Blocker.HgIASOYA

How to remove Dropped:Trojan.Honkey.A?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

How to remove “Worm:Win32/Korgo.V”?

The Worm:Win32/Korgo.V is considered dangerous by lots of security experts. When this infection is active,…

9 seconds ago

Worm.Win32.Vobfus.dlcn (file analysis)

The Worm.Win32.Vobfus.dlcn is considered dangerous by lots of security experts. When this infection is active,…

4 mins ago

Win32/Adware.InternetAntivirus removal instruction

The Win32/Adware.InternetAntivirus is considered dangerous by lots of security experts. When this infection is active,…

4 mins ago

TrojanDownloader:Win32/Unruy.A removal instruction

The TrojanDownloader:Win32/Unruy.A is considered dangerous by lots of security experts. When this infection is active,…

9 mins ago

Trojan:MSIL/Zusy.RDF!MTB removal guide

The Trojan:MSIL/Zusy.RDF!MTB is considered dangerous by lots of security experts. When this infection is active,…

9 mins ago

About “Win32:Sality-KYG” infection

The Win32:Sality-KYG is considered dangerous by lots of security experts. When this infection is active,…

9 mins ago