Trojan

How to remove “Trojan-PSW.Win32.Disco.hhd”?

Malware Removal

The Trojan-PSW.Win32.Disco.hhd is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-PSW.Win32.Disco.hhd virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Starts servers listening on 127.0.0.1:0
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Trojan-PSW.Win32.Disco.hhd?


File Info:

name: 46ABE256C786AC3C9CDA.mlw
path: /opt/CAPEv2/storage/binaries/67b935f4752ec0e4cec61db22a70fb8edffbe3e2f0bd6bafc943b4fba7e8f789
crc32: 4B0CB390
md5: 46abe256c786ac3c9cda351533b49898
sha1: faafbb0000f2281b7ba606c1d1c63013dd3da240
sha256: 67b935f4752ec0e4cec61db22a70fb8edffbe3e2f0bd6bafc943b4fba7e8f789
sha512: b05a6ddcd53bd73e8f1e8eb6a0da3959cc0a454ea945f71ffe537777b9ecbf9432a66ec142b014b6ec48a527115e2742c175afad592f6b7fe245278c5e6594f5
ssdeep: 24576:YUd+3EeqMA35fJuGFeRjcl9Us6C7CV/KOKpMeK9QTdl/6:t/MA35fJxeulqfplKpVT3
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T1A2158D5AA7A800FDD077C138C9925607E6B2B45A137197DF03E08A762F23AF55E3B760
sha3_384: 381cd3cadb5810d09264c8b36b8a0def26acfc9a4138b4d1964c8f5f7a3b8436dfc07ddf4317f8cf069526c984cfee72
ep_bytes: 4883ec28e80b0800004883c428e97afe
timestamp: 2021-11-21 15:20:47

Version Info:

0: [No Data]

Trojan-PSW.Win32.Disco.hhd also known as:

LionicTrojan.Win32.Disco.i!c
MicroWorld-eScanTrojan.GenericKD.47461311
FireEyeTrojan.GenericKD.47461311
ALYacTrojan.GenericKD.47461311
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojanPSW:Win32/Disco.bcbb559d
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.000f22
ArcabitTrojan.Generic.D2D433BF
SymantecTrojan.Gen.MBT
TrendMicro-HouseCallTROJ_GEN.R002C0WKO21
KasperskyTrojan-PSW.Win32.Disco.hhd
BitDefenderTrojan.GenericKD.47461311
AvastWin64:PWSX-gen [Trj]
Ad-AwareTrojan.GenericKD.47461311
EmsisoftTrojan.GenericKD.47461311 (B)
TrendMicroTROJ_GEN.R002C0WKO21
McAfee-GW-EditionBehavesLike.Win64.Generic.dh
SophosMal/Generic-S
JiangminTrojan.PSW.Disco.ces
MAXmalware (ai score=89)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataTrojan.GenericKD.47461311
AhnLab-V3Trojan/Win.Generic.C4788825
McAfeeArtemis!46ABE256C786
APEXMalicious
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PossibleThreat
AVGWin64:PWSX-gen [Trj]
PandaTrj/CI.A

How to remove Trojan-PSW.Win32.Disco.hhd?

Trojan-PSW.Win32.Disco.hhd removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment