Trojan

Trojan-PSW.Win32.Disco.hwl removal

Malware Removal

The Trojan-PSW.Win32.Disco.hwl is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-PSW.Win32.Disco.hwl virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Trojan-PSW.Win32.Disco.hwl?


File Info:

name: 3B6B87CEF3212A60BE56.mlw
path: /opt/CAPEv2/storage/binaries/bc73febab09414abe0b65363421bacdc8e14f97abc291dafbaa73faf8e11f4c1
crc32: D4179514
md5: 3b6b87cef3212a60be5649293e0fc0d2
sha1: c5f9e7a87fd9754c101d2c8a5ab599f10ad2ce74
sha256: bc73febab09414abe0b65363421bacdc8e14f97abc291dafbaa73faf8e11f4c1
sha512: db697f9222c79dacf4c778c57e3e065a942e82d091de7160bf32ba1eff58918fd648d1b8de94e3a69fbf9eb72ac3c1ea5a3acce365a1ffc7b02fa6422aa0fe99
ssdeep: 3072:7nTpd45T6vXCUkfwS2/bmfXA31vmMp1awtMNPMzU3Ki5c5MEYDpUo6Rrk00d0bIX:I5swwSMbmWmMK0MSD3JYDpfezBCoj29Z
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T158142A2517788A6AE47E37F5E037411443B0A11A3412EBDFCE8AB8DE3F27791861B563
sha3_384: 65d5fc7c2bfdcb2e09ff1f08f2fa509f7cfa60477210e69ef0abc7cf9de2d03a42da4ca759eb19e5d79dfbde0cdb3ef2
ep_bytes: ff250020400001000000050000000600
timestamp: 2021-06-27 14:49:48

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: OsuBuddy
FileVersion: 1.0.0.0
InternalName: OsuBuddy.exe
LegalCopyright: Copyright © 2021
LegalTrademarks:
OriginalFilename: OsuBuddy.exe
ProductName: OsuBuddy
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Trojan-PSW.Win32.Disco.hwl also known as:

LionicTrojan.Win32.Disco.i!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.47529483
FireEyeTrojan.GenericKD.47529483
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacTrojan.GenericKD.47529483
CylanceUnsafe
K7AntiVirusUnwanted-Program ( 005880191 )
K7GWUnwanted-Program ( 005880191 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/GameHack.BJI potentially unsafe
TrendMicro-HouseCallTROJ_GEN.R002C0WL421
KasperskyTrojan-PSW.Win32.Disco.hwl
BitDefenderTrojan.GenericKD.47529483
AvastWin32:MalwareX-gen [Trj]
TencentWin32.Trojan-qqpass.Qqrob.Llhr
Ad-AwareTrojan.GenericKD.47529483
SophosMal/Generic-S (PUA)
TrendMicroTROJ_GEN.R002C0WL421
McAfee-GW-EditionArtemis!Trojan
EmsisoftTrojan.GenericKD.47529483 (B)
GDataTrojan.GenericKD.47529483
MicrosoftTrojan:Win32/Wacatac.B!ml
AhnLab-V3Trojan/Win.Generic.C4542755
McAfeeGenericRXAA-AA!3B6B87CEF321
MAXmalware (ai score=86)
MalwarebytesMalware.AI.3521020521
SentinelOneStatic AI – Suspicious PE
FortinetAdware/GameHack
AVGWin32:MalwareX-gen [Trj]
PandaTrj/GdSda.A
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan-PSW.Win32.Disco.hwl?

Trojan-PSW.Win32.Disco.hwl removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment