Trojan

How to remove “Trojan.Blueh”?

Malware Removal

The Trojan.Blueh is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Blueh virus can do?

  • Reads data out of its own binary image
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Blueh?


File Info:

crc32: A982E90F
md5: 72ed3885f3d2a1413c508a2000b8bf2e
name: 72ED3885F3D2A1413C508A2000B8BF2E.mlw
sha1: c5db6d73f6dc0063890e98eb634a6d5e293a9b80
sha256: 8bbcd9bc1f8dc8ee516620bbf0a832384292dd3c206321290f51cc9459a2744d
sha512: 563f6f17fc844255b542153724dd5097c1d7260b0973a3b84ff084429eeb7d022b97ea3fc72c2f3b59cbabdd62565067bc71fcf18fd6c1f9295cd1c3c61c7ba5
ssdeep: 24576:hynybeGAIXYQyjBVUEj+6hWNeDExDCBxKsFmtS2kIZ:hzkQMENeD4DCBpFvaZ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: (C) 2019 NVIDIA Corporation. All rights reserved.
InternalName: NVIDIA nodejs launcher
FileVersion: 3.20.1.57
CompanyName: NVIDIA Corporation
ProductName: NVIDIA GeForce Experience
ProductVersion: 3.20.1.57
FileDescription: NVIDIA nodejs launcher
OriginalFilename: nvnodejslauncher.exe
Translation: 0x0409 0x04b0

Trojan.Blueh also known as:

K7AntiVirusTrojan ( 003f2e731 )
Elasticmalicious (high confidence)
DrWebTrojan.Click2.42536
CynetMalicious (score: 100)
CAT-QuickHealTrojan.BlueHeaven.E5
ALYacGen:Variant.Razy.847587
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 003f2e731 )
Cybereasonmalicious.5f3d2a
BaiduWin32.Virus.Blueh.a
SymantecSMG.Heur!gen
ESET-NOD32a variant of Win32/Blueh.A
APEXMalicious
AvastWin32:GenMaliciousA-JHC [PUP]
ClamAVWin.Trojan.Autorun-21548
KasperskyTrojan.Win32.Blueh.hz
BitDefenderGen:Variant.Razy.847587
NANO-AntivirusTrojan.Win32.Blueh.huxbnz
ViRobotTrojan.Win32.A.Blueh.203264
MicroWorld-eScanGen:Variant.Razy.847587
TencentTrojan.Win32.Blueh.a
Ad-AwareGen:Variant.Razy.847587
ComodoTrojWare.Win32.Blueh.A@8g7xpb
BitDefenderThetaGen:NN.ZexaF.34690.JvZ@ai6!j!mi
VIPRETrojan.Win32.Blueh.a (v)
McAfee-GW-EditionBehavesLike.Win32.Ransomware.th
FireEyeGeneric.mg.72ed3885f3d2a141
EmsisoftGen:Variant.Razy.847587 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Generic.aoghu
AviraW32/Hlubea.D
Antiy-AVLTrojan/Generic.ASMalwS.12C21E
KingsoftHeur.SSC.774425.1216.(kcloud)
MicrosoftVirTool:Win32/Hlubea.A
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataWin32.Trojan.PSE.I7MSDS
AhnLab-V3Worm/Win32.AutoRun.R41547
McAfeeTrojan-FDMI!72ED3885F3D2
MAXmalware (ai score=82)
VBA32BScope.Trojan.Blueh
MalwarebytesTrojan.Blueh
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazqMbZXtZYQ6GAXBF0q2tVl+)
YandexTrojan.GenAsa!tn1+jraR8o8
IkarusTrojan.Win32.Blueh
MaxSecureTrojan.BlueHeaven
FortinetW32/Blueh.A!tr
AVGWin32:GenMaliciousA-JHC [PUP]

How to remove Trojan.Blueh?

Trojan.Blueh removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment