Trojan

Trojan.Win32.Hedo.bklr removal

Malware Removal

The Trojan.Win32.Hedo.bklr is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Hedo.bklr virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX

How to determine Trojan.Win32.Hedo.bklr?


File Info:

name: E5411349BD6ACD10869F.mlw
path: /opt/CAPEv2/storage/binaries/0a9dbc8e486bb787cd64d60950fd338478868b3ec2a14282d736d4a514c251d6
crc32: 76B325FD
md5: e5411349bd6acd10869f6f007171eeb4
sha1: b43f40109448b32ada62f79759f81e053cb1e530
sha256: 0a9dbc8e486bb787cd64d60950fd338478868b3ec2a14282d736d4a514c251d6
sha512: 98648b53e1be02aa1f90f865dae28c0c245863592dc0b07cb8ed68bf1d2d25f561637264aa196a29420a719fe50ca374379eab5621673672322e40c1453f4d6d
ssdeep: 6144:2HV0VmV0VtV0VAV0VtV0VJV0VtV0VAV0VtV0VmV0VtV0VAV0VtV0VLV0VtV0VAVa:
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F2268E43A9CCB576CB9B02372A94DA3811E82190D7484B02FBFD397ABFC6AD1354E355
sha3_384: b1d40bfcab1a5f9e59385010921821156b8c144deab0fc5418989851b9fe37b906ac04ea1209c2794b307f871447777b
ep_bytes: 60be158040008dbeeb8fffff5783cdff
timestamp: 2016-03-01 22:44:44

Version Info:

0: [No Data]

Trojan.Win32.Hedo.bklr also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Hedo.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen15.22576
MicroWorld-eScanTrojan.Agent.EYLR
FireEyeGeneric.mg.e5411349bd6acd10
McAfeeArtemis!E5411349BD6A
MalwarebytesTrojan.Dropper
ZillyaTrojan.Agent.Win32.2602989
SangforTrojan.Win32.Hedo.bklr
K7AntiVirusTrojan ( 0058876d1 )
AlibabaTrojan:Win32/Generic.4954d771
K7GWTrojan ( 0058876d1 )
CrowdStrikewin/malicious_confidence_70% (W)
BitDefenderThetaGen:NN.ZexaF.34182.@pJfaix7qjpi
VirITTrojan.Win32.Agent3.CIEB
CyrenW32/Agent.DOR.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Agent.ADMM
TrendMicro-HouseCallSuspicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Hedo.bklr
BitDefenderTrojan.Agent.EYLR
NANO-AntivirusTrojan.Win32.Agent.epwdel
TencentTrojan.Win32.Agent.wb
EmsisoftTrojan.Agent.EYLR (B)
TrendMicroSuspicious
SophosMal/Generic-S
Paloaltogeneric.ml
JiangminTrojan.Agent.dlnq
AviraTR/Crypt.ULPM.Gen
Antiy-AVLTrojan/Win32.SGeneric
MicrosoftPWS:Win32/Zbot!ml
ZoneAlarmTrojan.Win32.Hedo.bklr
GDataWin32.Trojan.PSE.1YNUJ22
AhnLab-V3Trojan/Win.QE.C4744266
VBA32Trojan.Agentb
ALYacTrojan.Agent.EYLR
MAXmalware (ai score=87)
APEXMalicious
RisingTrojan.Agent!1.D9AC (RDMK:cmRtazrdeCWSL7z1mCFchqZYkLw5)
YandexTrojan.Fuery!D+JupAt/MK4
SentinelOneStatic AI – Malicious PE
FortinetW32/Agent.ADMM!tr
AVGWin32:Malware-gen
Cybereasonmalicious.9bd6ac
PandaTrj/Genetic.gen

How to remove Trojan.Win32.Hedo.bklr?

Trojan.Win32.Hedo.bklr removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment