Trojan

What is “Trojan.Win32.Phave.a”?

Malware Removal

The Trojan.Win32.Phave.a is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Phave.a virus can do?

  • Presents an Authenticode digital signature
  • Anomalous binary characteristics

How to determine Trojan.Win32.Phave.a?


File Info:

crc32: EC97AEAD
md5: d23c6f68b91634e82c37cafa4716b28c
name: D23C6F68B91634E82C37CAFA4716B28C.mlw
sha1: 87eb7d6b8fdbb22bfda894756a9d6fa27b4b3b89
sha256: 8d3ede740cab3188f5bb840d9c327f3357d89ca95b2dd0c8f6e6107f75ff7fa4
sha512: 3c314c0ef32dbf9cf7acbb72bfbfb4ddfd157d2e53c96bb2bf61e38aec51023478f93a06da16bfddd64e53a2ab59b083fb9e169b8ff3479854912f7f960d6fc7
ssdeep: 384:brvh9yg4sT5OrZpkEI0HHENkJ4Q2Q/+/pXsoRFPM85iYUAKJZ:f8sTMaCENkJR/NYG
type: PE32+ executable (GUI) x86-64 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Trojan.Win32.Phave.a also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.46609957
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaVirTool:Win64/Dupshirk.c4271662
Cybereasonmalicious.b8fdbb
CyrenW64/Rozena.BF.gen!Eldorado
SymantecRansom.Hermes!gen2
ESET-NOD32a variant of Win64/Rozena.CA
APEXMalicious
AvastWin64:Trojan-gen
KasperskyHEUR:Trojan.Win32.Phave.a
BitDefenderTrojan.GenericKD.46609957
MicroWorld-eScanTrojan.GenericKD.46609957
Ad-AwareTrojan.GenericKD.46609957
SophosML/PE-A + ATK/Phantom-B
TrendMicroTROJ_GEN.R002C0DGA21
McAfee-GW-EditionTrojan-FRQF!D23C6F68B916
FireEyeGeneric.mg.d23c6f68b91634e8
EmsisoftTrojan.GenericKD.46609957 (B)
AviraHEUR/AGEN.1142907
MicrosoftVirTool:Win64/Dupshirk.gen!F
ArcabitTrojan.Generic.D2C73625
ZoneAlarmHEUR:Trojan.Win32.Phave.a
GDataTrojan.GenericKD.46609957
AhnLab-V3Malware/Win64.RL_Generic.R350996
McAfeeTrojan-FRQF!D23C6F68B916
MAXmalware (ai score=86)
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0DGA21
IkarusTrojan.Win64.Rozena
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Phave.ABG!tr
AVGWin64:Trojan-gen
Paloaltogeneric.ml

How to remove Trojan.Win32.Phave.a?

Trojan.Win32.Phave.a removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment