Categories: Malware

PWS:Win32/Hukle removal instruction

The PWS:Win32/Hukle is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PWS:Win32/Hukle virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine PWS:Win32/Hukle?


File Info:

crc32: EA347416md5: 59f7a1131a9e52ec6496899d48ea0330name: 59F7A1131A9E52EC6496899D48EA0330.mlwsha1: f5b8ff57225237b9f3cef8ad216261205f6de02bsha256: 05aca2698f63ba6b337166ed34483ce44a389020eb7076c4df818db231121c8dsha512: 31cab84573f9cf2233088e6fc5a931ec85320a7115fa75229fc46fc10e17601b311120131d1866fd601a442dd65dbd9af1f736cd6b05f10ae5a737af9f3f97ecssdeep: 3072:uAo5xARLFwVovRsafJ3lTK/e3uZaJgQt:po5cwVov33Ue37type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x7248x6743x6240x6709 (C) 2002InternalName: x6f5cx4f0fx5728x4e16 x5343x5e74(www.shjsafe.net)FileVersion: 1, 0, 0, 1CompanyName: x6f5cx4f0fx5728x4e16 x5343x5e74(www.shjsafe.net)PrivateBuild: LegalTrademarks: Comments: ProductName: x6f5cx4f0fx5728x4e16 x5343x5e74(www.shjsafe.net)SpecialBuild: ProductVersion: 1, 0, 0, 1FileDescription: OriginalFilename: DEMO.EXETranslation: 0x0804 0x04b0

PWS:Win32/Hukle also known as:

Bkav W32.AIDetect.malware1
Lionic Trojan.Win32.Hukle.i!c
Elastic malicious (high confidence)
DrWeb Trojan.PWS.Sincom.68
McAfee Artemis!59F7A1131A9E
Cylance Unsafe
Zillya Trojan.Hukle.Win32.124
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_60% (D)
Alibaba TrojanPSW:Win32/Hukle.05d60066
Cybereason malicious.31a9e5
Cyren W32/Hukle.ACGX-3312
Symantec ML.Attribute.HighConfidence
ESET-NOD32 Win32/PSW.Hukle.Q
APEX Malicious
Avast Win32:Trojan-gen
Cynet Malicious (score: 100)
Kaspersky Trojan-PSW.Win32.Hukle.q
BitDefender Trojan.Pws.Hukle.Q
NANO-Antivirus Trojan.Win32.Hukle.epbt
MicroWorld-eScan Trojan.Pws.Hukle.Q
Tencent Win32.Trojan-qqpass.Qqrob.Szvr
Ad-Aware Trojan.Pws.Hukle.Q
Sophos Generic ML PUA (PUA)
Comodo TrojWare.Win32.PSW.Hukle.Q@37p0
BitDefenderTheta Gen:NN.ZexaF.34058.jmMfaWx5OCkb
VIPRE Trojan.Win32.Generic!BT
TrendMicro Mal_Legmir2
McAfee-GW-Edition BehavesLike.Win32.VirRansom.ch
FireEye Generic.mg.59f7a1131a9e52ec
Emsisoft Trojan.Pws.Hukle.Q (B)
SentinelOne Static AI – Suspicious PE
Jiangmin Trojan/PSW.LMir.da.Maker
Webroot W32.Trojan.Trojan-PWS-Hukle
Avira TR/ATRAPS.Gen
eGambit Unsafe.AI_Score_96%
Microsoft PWS:Win32/Hukle
ZoneAlarm Trojan-GameThief.Win32.Lmir.gen
GData Trojan.Pws.Hukle.Q
TACHYON Trojan-PWS/W32.Hukle.147968
AhnLab-V3 Trojan/Win32.Hukle.R73921
VBA32 TrojanPSW.Hukle
MAX malware (ai score=100)
Panda Trojan Horse.AP2
TrendMicro-HouseCall Mal_Legmir2
Rising Stealer.HMir!1.6708 (CLASSIC)
Ikarus Trojan-GameThief.Win32.Lmir
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/LegMir.Q!tr.pws
AVG Win32:Trojan-gen
Qihoo-360 Win32/TrojanPSW.Generic.HwsBjtEA

How to remove PWS:Win32/Hukle?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

Zusy.318182 removal

The Zusy.318182 is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

Win32:Regrun-LY [Trj] (file analysis)

The Win32:Regrun-LY [Trj] is considered dangerous by lots of security experts. When this infection is…

1 hour ago

MSIL/Kryptik.AJRE (file analysis)

The MSIL/Kryptik.AJRE is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

Trojan.Generic.35780066 removal

The Trojan.Generic.35780066 is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago

Win32/Agent.AFBR information

The Win32/Agent.AFBR is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago

Barys.385087 removal guide

The Barys.385087 is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago