Trojan

Trojan:Win32/Bluether.A!dha removal tips

Malware Removal

The Trojan:Win32/Bluether.A!dha is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Bluether.A!dha virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Drops a binary and executes it
  • Deletes its original binary from disk
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

blognews.onmypc.org
ametoy.acmetoy.com

How to determine Trojan:Win32/Bluether.A!dha?


File Info:

crc32: E1B18C6D
md5: 4bcb99623c05fc2abaa1b4090b0bee6c
name: 4BCB99623C05FC2ABAA1B4090B0BEE6C.mlw
sha1: 76244e06e6a1eee5b3db15ca00b1896f0fc53dd4
sha256: a384e6d697740465196bdb53ed47e31e4ddae5fcbd7543406456acbe1c00882a
sha512: 97356d4c8933e5ae2cde9b00450a619f2ae84bf81b73969d9f2a4dd5f043d8251c8b0bec22e709828718b1726fe623c917a8a9bf0eca59845c70ac9cc0192f26
ssdeep: 384:TS4mQCzNgIyU91N1FpCmdoXemuanYDddFmHUi85FSG3S/YxmszE/ZiJI:TXCJghiN1h+XeZZg0bSwY8YY
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
InternalName: Bluthmon.exe
FileVersion: 3, 7, 5, 13
CompanyName: Mototech.co
PrivateBuild:
LegalTrademarks:
Comments:
ProductName: Bluetooth Monitor
SpecialBuild:
ProductVersion: 3, 7, 5, 13
FileDescription: Bluetooth Monitor
OriginalFilename: Motomon.exe
Translation: 0x0409 0x04b0

Trojan:Win32/Bluether.A!dha also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Ser.Mikey.1391
FireEyeGeneric.mg.4bcb99623c05fc2a
McAfeeGenericRXEX-WK!4BCB99623C05
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Bluether.A
K7AntiVirusTrojan ( 0055e3dd1 )
BitDefenderGen:Variant.Ser.Mikey.1391
K7GWTrojan ( 0055e3dd1 )
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Blocker.fwvh
AlibabaTrojan:Win32/Blocker.f454d9af
NANO-AntivirusTrojan.Win32.Agent.dgrlml
AegisLabTrojan.Win32.Blocker.j!c
RisingTrojan.Bluether!8.1E8D (TFE:5:wgs0Nqp92wR)
Ad-AwareGen:Variant.Ser.Mikey.1391
SophosMal/Generic-S + Troj/Bluether-B
ComodoMalware@#30v74ifpz5pag
F-SecureHeuristic.HEUR/AGEN.1111002
DrWebTrojan.DownLoader11.40674
ZillyaTrojan.Blocker.Win32.25518
TrendMicroBKDR_PLEAD.SMZTDK-C
McAfee-GW-EditionGenericRXEX-WK!4BCB99623C05
EmsisoftGen:Variant.Ser.Mikey.1391 (B)
IkarusTrojan-Ransom.Blocker
JiangminTrojan.Blocker.d
AviraHEUR/AGEN.1111002
MAXmalware (ai score=100)
Antiy-AVLTrojan[Ransom]/Win32.Blocker
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Bluether.A!dha
ArcabitTrojan.Ser.Mikey.D56F
ZoneAlarmTrojan-Ransom.Win32.Blocker.fwvh
GDataGen:Variant.Ser.Mikey.1391
CynetMalicious (score: 85)
AhnLab-V3Malware/Win32.Generic.C636715
BitDefenderThetaGen:NN.ZexaF.34590.cq0@aSM@Vcli
ALYacGen:Variant.Ser.Mikey.1391
VBA32Hoax.Blocker
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/Chgt.H
ESET-NOD32a variant of Win32/Agent.VBQ
TrendMicro-HouseCallBKDR_PLEAD.SMZTDK-C
TencentWin32.Trojan.Blocker.Pgnj
YandexTrojan.Blocker!jebDcCoRy/4
FortinetW32/Agent.WMZ!tr
AVGWin32:Malware-gen
Cybereasonmalicious.23c05f
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Blocker.HwcB0i8A

How to remove Trojan:Win32/Bluether.A!dha?

Trojan:Win32/Bluether.A!dha removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment