Malware

Flooder.Webhat.20834 removal guide

Malware Removal

The Flooder.Webhat.20834 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Flooder.Webhat.20834 virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Unconventionial language used in binary resources: Portuguese (Brazilian)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Flooder.Webhat.20834?


File Info:

name: 910FCF2E3E7920B9CDB0.mlw
path: /opt/CAPEv2/storage/binaries/d29141916204229f569a33bed798a6263a2e38b33171c9bfca51ddce26282340
crc32: 2661D519
md5: 910fcf2e3e7920b9cdb00d1dc4306492
sha1: 78c46688e01785e9b3c4193904f678e6c696a076
sha256: d29141916204229f569a33bed798a6263a2e38b33171c9bfca51ddce26282340
sha512: 9a1f8f088a762d378c8203eb5b2c2bd5a3b43032e8e3e186bb6cfa732746461ba494b94ac28a6799765faeb32f8ba7941978bdc0853256c67e65f9a61f80414c
ssdeep: 12288:21Tzh2fR0DArqdM/NfLdHgE5obOSkdcoKKxc:2hEatmNfiE57Skdft
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12EA4AE26F6C14837D1231A389C5BA739DC36BF51292C65866BED3C4C8F7A79278182D3
sha3_384: f58900869e8ecd196b542f250825a0adc20debaf5c1c2c028dc3ec76afc0d965afca8b9ac5c730bf5fea7198226e3f59
ep_bytes: 558bec83c4f4b8789e4500e80cc1faff
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Flooder.Webhat.20834 also known as:

Elasticmalicious (high confidence)
FireEyeGeneric.mg.910fcf2e3e7920b9
CAT-QuickHealFlooder.Webhat.20834
McAfeeArtemis!910FCF2E3E79
CylanceUnsafe
SangforTrojan.Win32.Symmi.31627
Cybereasonmalicious.8e0178
SymantecTrojan.Gen.MBT
APEXMalicious
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.Webhat.crgcxj
RisingTrojan.Generic@ML.85 (RDML:cZ6zmp1rL0WzrDx5ci1dRA)
ComodoMalware@#10p97p5foubbr
DrWebAdware.InstallCore.53
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Worm.gh
SophosMal/Generic-S
AviraTR/Symmi.31627.825
KingsoftWin32.Hack.Webhat.b.(kcloud)
SUPERAntiSpywareTrojan.Agent/Gen-Symmi
MicrosoftTrojan:Script/Phonzy.A!ml
CynetMalicious (score: 99)
VBA32EmailFlooder.Webhat
TencentTrojan.Win32.BitCoinMiner.la
IkarusEmail-Flooder.Win32.Webhat
BitDefenderThetaGen:NN.ZelphiF.34294.CGW@aCXZEGdG
PandaTrj/CI.A
MaxSecureTrojan.Malware.300983.susgen

How to remove Flooder.Webhat.20834?

Flooder.Webhat.20834 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment