Trojan

Trojan.Heur.fiXarHhHohnab removal

Malware Removal

The Trojan.Heur.fiXarHhHohnab is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Heur.fiXarHhHohnab virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Heur.fiXarHhHohnab?


File Info:

name: 415B0F3AE42C3292270A.mlw
path: /opt/CAPEv2/storage/binaries/a0e12b1d35060ec2e6fb87b466b83e19a82583cc9b449725eb9dc598d49c5e9f
crc32: 62C3503C
md5: 415b0f3ae42c3292270a276aa35d1afc
sha1: 9e7a3fb7dd85fbfda56d530b72c2a3fa7e4ddc21
sha256: a0e12b1d35060ec2e6fb87b466b83e19a82583cc9b449725eb9dc598d49c5e9f
sha512: 66f15244c11d12e25d02e817a9764b4034db6d70a6144fed2355f9249acf59c761cc4aa0bb4b453842bcefc713746ae5fbe970a82491fd2b50beaa72d9ff91fc
ssdeep: 1536:0pOyX2B3yAgfz/o4I8ESCbWF82a4Xa5F:82cbfz/o4I8ESCiF82q/
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E883E0A17F42280BE7128C3798528B9D97736F155B132F9D93683B953E390963F36342
sha3_384: 2d004a7d9242194794b0c8fc02bba16581a7c4ad5b0ef21cf69637539efcde101f83c2c59794b86e253a0a0d0cbb744d
ep_bytes: b85cb141005064ff3500000000648925
timestamp: 2009-12-04 13:35:59

Version Info:

0: [No Data]

Trojan.Heur.fiXarHhHohnab also known as:

BkavW32.FamVT.RamisMAM.Trojan
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Heur.fiXarHhHohnab
ClamAVWin.Worm.VB-556
FireEyeGeneric.mg.415b0f3ae42c3292
McAfeeW32/MoonLight.worm.c
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusEmailWorm ( 0040f8c11 )
K7GWEmailWorm ( 0040f8c11 )
CrowdStrikewin/malicious_confidence_100% (W)
BaiduWin32.Virus.Virut.gen
VirITWorm.Win32.VB.T
CyrenW32/Virut.AM.gen!Eldorado
SymantecW32.Rontokbro@mm
ESET-NOD32Win32/Virut.NBP
APEXMalicious
CynetMalicious (score: 100)
KasperskyWorm.Win32.VB.cz
BitDefenderGen:Trojan.Heur.fiXarHhHohnab
NANO-AntivirusTrojan.Win32.VB.crsvto
SUPERAntiSpywareTrojan.Agent/Gen-Pakon
AvastWin32:Vitro [Inf]
Ad-AwareGen:Trojan.Heur.fiXarHhHohnab
EmsisoftGen:Trojan.Heur.fiXarHhHohnab (B)
ComodoWorm.Win32.VB.CZ_14_A0@1n9m6e
DrWebTrojan.MulDrop.59624
VIPREGen:Trojan.Heur.fiXarHhHohnab
McAfee-GW-EditionBehavesLike.Win32.Generic.mc
Trapminemalicious.high.ml.score
SophosML/PE-A + Mal/VBInject-F
SentinelOneStatic AI – Malicious PE
GDataGen:Trojan.Heur.fiXarHhHohnab
JiangminWin32/Virut.bv
WebrootW32.Worm.Gen
AviraWORM/VB.CZ.14.A
Antiy-AVLTrojan/Generic.ASMalwS.15
ArcabitTrojan.Heur.fiXarHhHohnab
MicrosoftTrojan:Win32/Dorv.A
GoogleDetected
AhnLab-V3HEUR/Fakon.mwf.X1381
BitDefenderThetaAI:Packer.54C98C591D
ALYacGen:Trojan.Heur.fiXarHhHohnab
MAXmalware (ai score=83)
VBA32Trojan.Wacatac
MalwarebytesGeneric.Worm.Agent.DDS
RisingWorm.VB.fa (CLASSIC)
YandexWin32.Virut.AB.Gen
IkarusWorm.Win32.Brontok
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Vitro [Inf]
Cybereasonmalicious.ae42c3

How to remove Trojan.Heur.fiXarHhHohnab?

Trojan.Heur.fiXarHhHohnab removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment