Trojan

TrojanClicker:Win32/Hatigh.C (file analysis)

Malware Removal

The TrojanClicker:Win32/Hatigh.C is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanClicker:Win32/Hatigh.C virus can do?

  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Attempts to disable or modify Explorer Folder Options
  • Attempts to modify Explorer settings to prevent file extensions from being displayed
  • Attempts to modify Explorer settings to prevent hidden files from being displayed

How to determine TrojanClicker:Win32/Hatigh.C?


File Info:

name: 0A2B44D50A1ADA819201.mlw
path: /opt/CAPEv2/storage/binaries/7ddc119fce53b0692b2bcbfdc1b5ecd2e788ab4fdac5e498347e92a871f4a07e
crc32: 2A17B6E4
md5: 0a2b44d50a1ada819201ca20cf87a7f1
sha1: 0b2ba3ada307da4113316dfac4465edd72be24e4
sha256: 7ddc119fce53b0692b2bcbfdc1b5ecd2e788ab4fdac5e498347e92a871f4a07e
sha512: 64fc6d3c2c0a8c30232cc24cc5ef24879b052f8a01021828fcebc2db46720db3180de7b0e2ed5e8d7c6fc06374dfef77daf5a0fa9d429f72f8d0d7f016533257
ssdeep: 768:OXtuCNba87ebyOqAILhDBtEhd0zovonk:OXj48vOUrtEhrx
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16EF32B16A150F0E2C0A156F137308BA1E6BCBA731B68E9F3D7802D667AB01F7C719957
sha3_384: 063d4beff8e968c4e76ed30cec44f24308db77e34f5b2e1405737455bf0e2b9ef8d58527464f6b0d35cfcad0506004f3
ep_bytes: e8653d0000e8453f000050e8e5420000
timestamp: 2009-04-24 08:27:03

Version Info:

0: [No Data]

TrojanClicker:Win32/Hatigh.C also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanGen:Trojan.RegistryDisabler.jmW@aypuQto
ClamAVWin.Trojan.Agent-35563
FireEyeGeneric.mg.0a2b44d50a1ada81
ALYacGen:Trojan.RegistryDisabler.jmW@aypuQto
MalwarebytesMalware.Heuristic.1001
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan-Downloader ( 004cc1071 )
K7GWTrojan-Downloader ( 004cc1071 )
Cybereasonmalicious.50a1ad
VirITTrojan.Win32.Generic.AIJE
CyrenW32/Blocker-based!Maximus
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32Win32/TrojanDownloader.Small.CYF
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Downloader.Win32.Suurch.pfm
BitDefenderGen:Trojan.RegistryDisabler.jmW@aypuQto
NANO-AntivirusTrojan.Win32.Vilsel.bkirf
AvastWin32:Vitro [Inf]
TencentMalware.Win32.Gencirc.10b548a6
Ad-AwareGen:Trojan.RegistryDisabler.jmW@aypuQto
EmsisoftGen:Trojan.RegistryDisabler.jmW@aypuQto (B)
ComodoTrojWare.Win32.TrojanDownloader.Generic.ad0@1d9fji
DrWebTrojan.DownLoad.41918
VIPREGen:Trojan.RegistryDisabler.jmW@aypuQto
TrendMicroTROJ_HATIGH.SMA
McAfee-GW-EditionGenDownloader.bp.ad
SophosML/PE-A + Troj/Dloadr-CLQ
SentinelOneStatic AI – Malicious PE
GDataGen:Trojan.RegistryDisabler.jmW@aypuQto
JiangminTrojanDownloader.Suurch.co
WebrootW32.Clicker.Gen
AviraTR/Downloader.Gen
MAXmalware (ai score=88)
Antiy-AVLTrojan/Generic.ASMalwS.3E2
ViRobotTrojan.Win32.Downloader.159744.BG
MicrosoftTrojanClicker:Win32/Hatigh.C
GoogleDetected
AhnLab-V3Trojan/Win32.Suurch.C111027
McAfeeGenDownloader.bp.ad
TACHYONTrojan-Downloader/W32.Suurch.159561
VBA32BScope.Trojan-Spy.Zbot
CylanceUnsafe
TrendMicro-HouseCallTROJ_HATIGH.SMA
RisingTrojan.DL.Win32.Undef.eet (CLASSIC)
YandexTrojan.GenAsa!qkbrJ+vDxm4
IkarusTrojan-Dropper.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Generic.AC.C1537!tr
BitDefenderThetaAI:Packer.EA8F88FE1E
AVGWin32:Vitro [Inf]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_90% (W)

How to remove TrojanClicker:Win32/Hatigh.C?

TrojanClicker:Win32/Hatigh.C removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment