Malware

Hoax.Win32.Getpin.re removal instruction

Malware Removal

The Hoax.Win32.Getpin.re is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Hoax.Win32.Getpin.re virus can do?

  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine Hoax.Win32.Getpin.re?


File Info:

crc32: 5F7D6F29
md5: acd4f81f3bbb0ceb39ed6aa660394013
name: Balls.exe
sha1: d6f587e4182f99d634a9a50e7acca22260239769
sha256: 43b773c08a2a6586d9894cb8ea30fd9c9d32895c0bb49738e2068fa159f3327d
sha512: 49e298ff94c8eb8a88b013a3de6aa01f6874ab3539fe54f4cc2183d30ec6d78d9bc35d947cf9f2fbaf72c518d3434b3cc707f0b5e273d644e8e611e47d6389eb
ssdeep: 12288:GymL5zVA1F9QAMXpc9GbKdA6En1pSOdbqxIIZOZPZ/tUE5b:2L5zqzaXpQGbKd1UrSOdOxIIgH/Oib
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Sergey Kucherov
InternalName: Balls
FileVersion: 1.0.3.5
CompanyName: Sergey Kucherov
PrivateBuild: 1.0.3.5
LegalTrademarks:
Comments: Created with Multimedia Builder, version 4.9.8.5
ProductName: Balls
SpecialBuild: 1.0.3.5
ProductVersion: 1.0.3.5
FileDescription:
OriginalFilename: Test.exe
Translation: 0x0409 0x04b0

Hoax.Win32.Getpin.re also known as:

BkavW32.HfsAutoB.
CylanceUnsafe
KasperskyHoax.Win32.Getpin.re
AlibabaHoax:Win32/Getpin.d95e4bdc
NANO-AntivirusRiskware.Win32.Getpin.czzjop
ZoneAlarmHoax.Win32.Getpin.re
MicrosoftPUA:Win32/Presenoker

How to remove Hoax.Win32.Getpin.re?

Hoax.Win32.Getpin.re removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment