Virus

About “Virus:Win32/Hublo.A” infection

Malware Removal

The Virus:Win32/Hublo.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Virus:Win32/Hublo.A virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Virus:Win32/Hublo.A?


File Info:

name: C1D3C71C71DC0DD129C6.mlw
path: /opt/CAPEv2/storage/binaries/337e542876d6b38ccd559c5bdc12b3fd1d49b5cc179902ca5c1a9dac9ea1e79f
crc32: 4F0B60D5
md5: c1d3c71c71dc0dd129c6f01c43f4b490
sha1: ba48a6ab45dd03e8fd458ae63b5f116b03ab5387
sha256: 337e542876d6b38ccd559c5bdc12b3fd1d49b5cc179902ca5c1a9dac9ea1e79f
sha512: 2bde405524dfa46f5ff86df33358d2a9260593600d690c34cb9fee2a7f97eab260d40e5ca2e6d7533711d8a78501b0a4687ef687b04b94b49d8194329603ee5c
ssdeep: 1536:QTe4LxtdbC+2kYtKW0F+xnUDipOLq7yrx5nsbDWu/XTvlTgrsbDWu/X376r7r:QTe4LbdbC+2kYtEFCAipOLq7y7e6r7r
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B073E8097688A135E8D224B046AC727182BDBDE51F21C3DFA244ABD9CD717F05A393DE
sha3_384: f6e85bd031100b2f4da1cd66837fd38d50566d0d7543beb880f34acc8ee37781c71b9ceda7a7c63eb4ae4917f5c93b01
ep_bytes: 609ce8000000005d81ed071040008db5
timestamp: 2008-04-13 18:35:24

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Windows® installer
FileVersion: 3.1.4001.5512
InternalName: msiexec
LegalCopyright: © Microsoft Corporation. All rights reserved.
LegalTrademarks1: Microsoft® is a registered trademark of Microsoft Corporation.
LegalTrademarks2: Windows® is a registered trademark of Microsoft Corporation.
OriginalFilename: msiexec.exe
ProductName: Windows Installer - Unicode
ProductVersion: 3.1.4001.5512
Translation: 0x0000 0x04b0

Virus:Win32/Hublo.A also known as:

BkavW32.GeksoneHQcA.PE
LionicVirus.Win32.Crytex.lJfl
Elasticmalicious (high confidence)
DrWebWin32.Siggen.15
MicroWorld-eScanWin32.Crytex.A
FireEyeGeneric.mg.c1d3c71c71dc0dd1
CAT-QuickHealW32.Hublo.A
SkyhighBehavesLike.Win32.Virut.lm
McAfeeArtemis!C1D3C71C71DC
VIPREWin32.Crytex.A
SangforVirus.Win32.Crytex.Vyob
K7AntiVirusVirus ( 0040f5911 )
AlibabaVirus:Win32/Crytex.b424dbec
K7GWVirus ( 0040f5911 )
Cybereasonmalicious.b45dd0
BitDefenderThetaGen:NN.ZexaF.36744.em0@aSfnYcci
SymantecBloodhound.W32.1
ESET-NOD32Win32/Geksone.B
APEXMalicious
ClamAVWin.Virus.Hublo-1
KasperskyVirus.Win32.Crytex.1290
BitDefenderWin32.Crytex.A
NANO-AntivirusVirus.Win32.Crytex.bzelsx
AvastWin32:Cryte
TencentVirus.Win32.Crytex.a
EmsisoftWin32.Crytex.A (B)
GoogleDetected
F-SecureMalware.W32/Crytex.1290
BaiduWin32.Virus.Crytex.a
ZillyaVirus.Geksone.Win32.1
TrendMicroPE_CRYTEX.A
SophosW32/NGVCK-W
SentinelOneStatic AI – Malicious PE
GDataWin32.Virus.Golem.A
VaristW32/Crytex.1290
AviraW32/Crytex.1290
MAXmalware (ai score=100)
Antiy-AVLVirus/Win32.Crytex.1290
KingsoftWin32.Infected.AutoInfector.a
XcitiumVirus.Win32.Crytex.1290@4wzy41
ArcabitWin32.Crytex.A
ZoneAlarmVirus.Win32.Crytex.1290
MicrosoftVirus:Win32/Hublo.A
CynetMalicious (score: 99)
AhnLab-V3Win32/Crytex.1290.X977
ALYacWin32.Crytex.A
VBA32Virus.Win32.Crytex.1290
Cylanceunsafe
PandaTrj/Chgt.AC
ZonerProbably Heur.ExeHeaderL
TrendMicro-HouseCallPE_CRYTEX.A
RisingVirus.Geksone!1.AD16 (CLASSIC)
IkarusVirus.Win32.Crytex
MaxSecureVirus.W32.Crytex.1290
FortinetW32/Geksone.B
AVGWin32:Cryte
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Virus:Win32/Hublo.A?

Virus:Win32/Hublo.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment