Trojan

Should I remove “Trojan.Win32.Mucc.ohb”?

Malware Removal

The Trojan.Win32.Mucc.ohb is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Mucc.ohb virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Sutu
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Win32.Mucc.ohb?


File Info:

crc32: 81A663FD
md5: 0a2ce5a915bf643953baf2fcf3b25a5e
name: 0A2CE5A915BF643953BAF2FCF3B25A5E.mlw
sha1: 21a26264df4f615da898b38ef9332ff66d24b505
sha256: 5a5428877719d24368bc14761dee49adf676fd883abd3a8c30b84c0b0c7e13f5
sha512: 9f79397ffdef767bd1d7ae12395be4b9172b556e6626b0811a22670acc645d7367f5dadeb5b1b4007e4c0f1829494cea55e2d3a28cddc16aa43f43bbab820574
ssdeep: 3072:CBWkR/6N08mSDea0rRzkaNTBW1NieJHz:CBWkR/E3Tia0RzkaNTBW1NieJ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0430 0x04b0
LegalCopyright: Yonyou Network
InternalName: abjections
FileVersion: 1.00
CompanyName: Yonyou Network
LegalTrademarks: Yonyou Network
Comments: Yonyou Network
ProductName: Yonyou Network
ProductVersion: 1.00
FileDescription: Yonyou Network
OriginalFilename: abjections.exe

Trojan.Win32.Mucc.ohb also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (W)
CyrenW32/VBKrypt.AVS.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.EPMI
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan.Win32.Mucc.ohb
BitDefenderTrojan.GenericKD.37057491
MicroWorld-eScanTrojan.GenericKD.37058304
Ad-AwareTrojan.GenericKD.37058304
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZevbaF.34722.im0@aCMpgOmG
VIPRELooksLike.Win32.Beebone.a (v)
McAfee-GW-EditionBehavesLike.Win32.Fareit.ct
FireEyeGeneric.mg.0a2ce5a915bf6439
EmsisoftTrojan.GenericKD.37058304 (B)
SentinelOneStatic AI – Suspicious PE
MicrosoftTrojan:Win32/Wacatac.B!ml
AegisLabTrojan.Win32.Mucc.4!c
GDataTrojan.GenericKD.37057491
McAfeePWS-FCZB!0A2CE5A915BF
MAXmalware (ai score=88)
PandaTrj/RnkBend.A
TrendMicro-HouseCallTROJ_GEN.F0D1C00F721
YandexTrojan.AvsArher.bTx33N
IkarusWin32.Outbreak
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/EPMI!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Trojan.Win32.Mucc.ohb?

Trojan.Win32.Mucc.ohb removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment