Trojan

Trojan:Win32/BHO.AO removal guide

Malware Removal

The Trojan:Win32/BHO.AO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/BHO.AO virus can do?

  • Authenticode signature is invalid

How to determine Trojan:Win32/BHO.AO?


File Info:

name: 18AD215D313A1859ED75.mlw
path: /opt/CAPEv2/storage/binaries/cdce575053dd5aa0a0ffbdf99d2fad61b1a70cd91f3e68111b68deace266e5f1
crc32: F5345F5B
md5: 18ad215d313a1859ed7536afd2261279
sha1: cbfef8637bf05d6adc2028d0dbb0c00b505f3e5f
sha256: cdce575053dd5aa0a0ffbdf99d2fad61b1a70cd91f3e68111b68deace266e5f1
sha512: 50db85a09c07aa6a38c9ad1681621fb0709a3664d542bb8790945eb806e571b1c077d7f5302f44573bc62bb7ae6d00e24e36ac5c0542d862f84ab58a68ef4863
ssdeep: 3072:DlZSEyeNNbSs8SRzJT6xNc+exFbfw5RGW91MkIYMxgWSyDPgwsGLIJn4mSlZqHxR:nyeNNcSRtT6xNcVxFbfw5b91MbYeJDYk
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1EAF33B10F141D026E05300FE5B2A4FB7AAAAAE315B6188C3F7C57E5A75752E1BA3470F
sha3_384: 8d5e700bbcd5b00736455d66cc5f97146905e5000f785da7e594e09224a061670cf9c787efc22c63edca5e76c32e7b7b
ep_bytes: 558bec538b5d08568b750c85f6578b7d
timestamp: 2009-02-04 15:31:00

Version Info:

CompanyName: Microsoft Corporation
FileDescription: XML parser library
FileVersion: 1.0.352.7
InternalName: libxml2
LegalCopyright: Copyright 2008
OriginalFilename: xml2w32.dll
ProductName: XML parser library
ProductVersion: 2.1.5477.13
Translation: 0x0409 0x04b0

Trojan:Win32/BHO.AO also known as:

LionicTrojan.Win32.BHO.l6ir
AVGWin32:Evo-gen [Trj]
DrWebTrojan.BhoSiggen.6544
MicroWorld-eScanGen:Variant.Chepdu.1
FireEyeGeneric.mg.18ad215d313a1859
SkyhighBehavesLike.Win32.Infected.cm
McAfeeCheppu
Cylanceunsafe
ZillyaTrojan.BHO.Win32.54
SangforSuspicious.Win32.Save.ins
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojanDownloader:Win32/Banload.41ba6515
K7GWTrojan ( 004e51f71 )
K7AntiVirusTrojan ( 004e51f71 )
BitDefenderThetaGen:NN.ZedlaF.36802.ku8@a4q6P8ki
VirITTrojan.Win32.Generic.BNZX
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32Win32/BHO.LXU
CynetMalicious (score: 100)
ClamAVWin.Trojan.BHO-5838
KasperskyTrojan-Downloader.Win32.Banload.aalmh
BitDefenderGen:Variant.Chepdu.1
NANO-AntivirusTrojan.Win32.BHO.doxuam
SUPERAntiSpywareAdware.AdRotator
AvastWin32:Evo-gen [Trj]
TencentMalware.Win32.Gencirc.10bdc9c6
TACHYONTrojan/W32.BHO.172032.O
EmsisoftGen:Variant.Chepdu.1 (B)
F-SecureTrojan.TR/BHO.Gen
VIPREGen:Variant.Chepdu.1
TrendMicroTROJ_BHO.SML
SophosMal/Generic-S
IkarusTrojan.Win32.Chepdu
JiangminTrojan/BHO.fnk
WebrootW32.Malware.Gen
GoogleDetected
AviraTR/BHO.Gen
Antiy-AVLTrojan/Win32.BHO
KingsoftWin32.Troj.Undef.a
MicrosoftTrojan:Win32/BHO.AO
XcitiumTrojWare.Win32.BHO.RB@16p26r
ArcabitTrojan.Chepdu.1
ViRobotTrojan.Win32.BHO.172032.F
ZoneAlarmTrojan-Downloader.Win32.Banload.aalmh
GDataWin32.Trojan.BHO.E
VaristW32/Downloader.AU.gen!Eldorado
AhnLab-V3Trojan/Win32.Banload.R2396
ALYacGen:Variant.Chepdu.1
MAXmalware (ai score=100)
VBA32Trojan.BHO
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_BHO.SML
RisingTrojan.Win32.BHO.fmg (CLASSIC)
YandexTrojan.GenAsa!oKCXQ/5rGTg
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.575342.susgen
FortinetW32/BHO.NM!tr
DeepInstinctMALICIOUS
alibabacloudTrojan[downloader]:Win/BHO.LXU

How to remove Trojan:Win32/BHO.AO?

Trojan:Win32/BHO.AO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment