Risk

RiskTool.Win32.HideExec.r removal guide

Malware Removal

The RiskTool.Win32.HideExec.r is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What RiskTool.Win32.HideExec.r virus can do?

  • Presents an Authenticode digital signature
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs

How to determine RiskTool.Win32.HideExec.r?


File Info:

name: C1C769D742F88E441DED.mlw
path: /opt/CAPEv2/storage/binaries/3e857094c9d89b31676477ce7d8d523f94c767f3cb0769dae99af76b3c4e004b
crc32: 31F6970E
md5: c1c769d742f88e441ded76bf57a5a45c
sha1: 06872dabd41e70dc4ef8fd5131b334be8a17db3c
sha256: 3e857094c9d89b31676477ce7d8d523f94c767f3cb0769dae99af76b3c4e004b
sha512: d35478590ab1abee0293589a8b8cc13307afb0a14d7bd01a35388114ace6cb007e0f132e5d90bc5ae90b3e36a3edef67354a94363415cf2a1d3ef5f4ae99636f
ssdeep: 384:WJ+Cy7vmcHBPQkiutjYma4QhxoN8FswmDykVs3usijVyPz2bqjzyaZbVKpggO7oh:PvBokiu2xBsUkVhGptX/7w2agRL4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15A13B58156D18862D66637B0C57ACD845AB17C31DEE17A7F8368E16F3870383E816B2F
sha3_384: 4d05b91d3a004123f07de70f4df0cbb22c28b8e5702cdefa9054f4dfc41a09d35834902d49b7d45dbf0caef03f9bf770
ep_bytes: 558becb83c230000e8f30e0000a10050
timestamp: 2010-07-07 14:22:23

Version Info:

CompanyName: NTWind Software
FileDescription: Hidden Start (32-bit)
FileVersion: 3.2.0.0
InternalName: hstart.exe
LegalCopyright: © 2009 NTWind Software
OriginalFilename: hstart.exe
ProductName: Hidden Start
ProductVersion: 3.2.0.0
Translation: 0x0409 0x04e4

RiskTool.Win32.HideExec.r also known as:

LionicRiskware.Win32.HideExec.1!c
MalwarebytesPUP.Optional.HiddenStart.H
SymantecSecurityRisk.HidStart
ESET-NOD32Win32/HiddenStart.A potentially unsafe
APEXMalicious
ClamAVWin.Dropper.Miner-4
Kasperskynot-a-virus:RiskTool.Win32.HideExec.r
NANO-AntivirusRiskware.Win32.HiddenStart.recrp
ComodoApplicUnsaf@#2cxeei11ctlk
DrWebProgram.HiddenStart
Antiy-AVLTrojan/Generic.ASBOL.2C48
GDataWin32.Trojan.Agent.0APV9K
CylanceUnsafe
YandexTrojan.GenAsa!U8mLbj62BnM
MaxSecureTrojan.Malware.3094555.susgen

How to remove RiskTool.Win32.HideExec.r?

RiskTool.Win32.HideExec.r removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment