Trojan

Trojan.Win32.Udochka.vho removal tips

Malware Removal

The Trojan.Win32.Udochka.vho is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Udochka.vho virus can do?

  • Attempts to connect to a dead IP:Port (2 unique times)
  • Performs some HTTP requests
  • Looks up the external IP address
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

api.ipify.org

How to determine Trojan.Win32.Udochka.vho?


File Info:

crc32: 17F44BF6
md5: 5e7ac79e96dbe285cba29a6e909c171a
name: 5E7AC79E96DBE285CBA29A6E909C171A.mlw
sha1: 453ed62045971554723275de992d5f731b6584b1
sha256: 4f424343ad7f36fd626de941758aee9c44092d29622f11eb40e4731aada7e10a
sha512: 5c010df48af90f829546d826283eb7916f8529987645ea67b723ec329cf90337a50fe759287d2c490814c7dc66dd15edbe03935528448b123e0934e59c405c61
ssdeep: 6144:hh5AwfdaVITytQyXlim2SWMNqa4Oksq9KX/k+ABc:5fdCoK+mzHNRPj
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Trojan.Win32.Udochka.vho also known as:

Elasticmalicious (high confidence)
DrWebTrojan.PWS.Siggen2.61122
MicroWorld-eScanGen:Variant.Jaik.41292
FireEyeGeneric.mg.5e7ac79e96dbe285
CAT-QuickHealTrojan.Udochka
McAfeeGenericRXAA-AA!5E7AC79E96DB
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 0001555e1 )
BitDefenderGen:Variant.Jaik.41292
K7GWTrojan ( 0001555e1 )
Cybereasonmalicious.e96dbe
BitDefenderThetaGen:NN.ZexaF.34760.qGX@a00gBxb
CyrenW32/Trojan.VLTZ-4067
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
ClamAVWin.Trojan.FickerStealer-9805476-1
KasperskyHEUR:Trojan.Win32.Udochka.vho
AlibabaTrojanDownloader:Win32/Stealer.de832099
ViRobotTrojan.Win32.Z.Jaik.273934
AegisLabTrojan.Win32.Udochka.4!c
RisingTrojan.Agent!8.B1E (TFE:5:FdJXowScMLN)
Ad-AwareGen:Variant.Jaik.41292
EmsisoftTrojan.Agent (A)
ComodoMalware@#3p82hhx0yv40y
ZillyaTrojan.Agent.Win32.1675397
TrendMicroTrojan.Win32.MALREP.THAADBA
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
SophosMal/Generic-S
IkarusTrojan.Win32.Agent
WebrootW32.Rogue.Gen
AviraTR/Agent.rgxxh
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojanDownloader:Win32/Stealer.CK!MTB
GridinsoftTrojan.Win32.Downloader.oa
ArcabitTrojan.Jaik.DA14C
ZoneAlarmHEUR:Trojan.Win32.Udochka.vho
GDataGen:Variant.Jaik.41292
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R352614
ALYacGen:Variant.Jaik.41292
MAXmalware (ai score=82)
VBA32BScope.Trojan.Zudochka
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Agent.UKB
TrendMicro-HouseCallTrojan.Win32.MALREP.THAADBA
TencentWin32.Trojan.Udochka.Sysg
eGambitUnsafe.AI_Score_98%
FortinetW32/Udochka.UKB!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Trojan.dd2

How to remove Trojan.Win32.Udochka.vho?

Trojan.Win32.Udochka.vho removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment