PUA

HTran (PUA) malicious file

Malware Removal

The HTran (PUA) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HTran (PUA) virus can do?

  • Authenticode signature is invalid

How to determine HTran (PUA)?


File Info:

name: 6D6BE5422A617B58E182.mlw
path: /opt/CAPEv2/storage/binaries/f3435d5f849f382dc230945f65264eafe3258c4b1aaba6a463fbe7db551c3a10
crc32: 2A3762A4
md5: 6d6be5422a617b58e182c06efd9a4b20
sha1: 016cb54b36401d75f7482d8a8b084c5b33dd6268
sha256: f3435d5f849f382dc230945f65264eafe3258c4b1aaba6a463fbe7db551c3a10
sha512: dbd357bbbb561fef806e7e8e4c94365f013c9b0e4e9ed62ebb70ad1d7912b598998becfc951b4ead6d5cdb711f515ab171d4965127457fc0fa7c9528c2c518bb
ssdeep: 768:wSYeMbx6WE6qwgSZKhqm6OJe8vIcIlDo:gRx6W5qqrOJe8vko
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T15FF26D1379C59173D093D6B120B38B36DB3BA15A036142C7DF149DAA6D725A0AE3B3CB
sha3_384: 12e940e0eede23a45176c1b1a9f2fc9027583bd89fb8bd8eaf18b5c911bc51af71beb8753ad599d26352330f5f02fa6f
ep_bytes: 558bec6aff681071400068ac43400064
timestamp: 2012-08-19 17:23:53

Version Info:

0: [No Data]

HTran (PUA) also known as:

LionicTrojan.Win32.Liondoor.m!c
DrWebTrojan.Siggen5.64461
FireEyeGeneric.mg.6d6be5422a617b58
McAfeeGenericRXCQ-LZ!6D6BE5422A61
CylanceUnsafe
SangforTrojan.Win32.Swisyn.B!dha
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/HackTool.Hucline.AC
APEXMalicious
ClamAVWin.Trojan.HTran-6964504-0
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.Liondoor.wssac
AvastWin32:Malware-gen
TencentWin32.Trojan-qqpass.Qqrob.Wqxf
TACHYONBackdoor/W32.Liondoor.36864
ComodoApplicUnsaf.Win32.Hucline.b@4qlr45
VIPRETrojan.Win32.Generic!BT
TrendMicroHackTool.Win32.HTran.SMA
McAfee-GW-EditionGenericRXCQ-LZ!6D6BE5422A61
SophosHTran (PUA)
JiangminBackdoor/Liondoor.bd
eGambitTrojan.Generic
AviraBDS/Liondoor.J.4
Antiy-AVLTrojan[Backdoor]/Win32.Liondoor
KingsoftWin32.Hack.Liondoor.dh.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
ViRobotBackdoor.Win32.A.Liondoor.36864.F
CynetMalicious (score: 100)
AhnLab-V3HackTool/Win32.Htran.R29266
VBA32BScope.Trojan.Click
TrendMicro-HouseCallHackTool.Win32.HTran.SMA
RisingTrojan.Win32.Generic.13564640 (C64:YzY0Ov3oYiqSovV6)
YandexTrojan.GenAsa!6Ppw+BwVYcI
IkarusBackdoor.Win32.Liondoor
FortinetW32/Liondoor.DH!tr.bdr
WebrootW32.Malware.Gen
AVGWin32:Malware-gen
PandaTrj/CI.A

How to remove HTran (PUA)?

HTran (PUA) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment