Virus

Should I remove “Virus:Win32/Hublo.A”?

Malware Removal

The Virus:Win32/Hublo.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Virus:Win32/Hublo.A virus can do?

  • Sample contains Overlay data
  • Unconventionial language used in binary resources: Spanish (Modern)
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Virus:Win32/Hublo.A?


File Info:

name: 8032C6A599974D3D3B97.mlw
path: /opt/CAPEv2/storage/binaries/3ec3b2c45a513a9fe5180772a20b9645eec0b7c6724a2476407d0fb923eb4269
crc32: C4ABE4C9
md5: 8032c6a599974d3d3b974730d961bf62
sha1: 4734f0ef982364d721b221b41441ab24c2558e29
sha256: 3ec3b2c45a513a9fe5180772a20b9645eec0b7c6724a2476407d0fb923eb4269
sha512: d8d38fe886a7cf6a497b316f4beaa39b49f764598f444efb98a7580c8523884e7f48741e0f7319d9d393199eda6266821e27b7b2c9861c6f8692806ddfac5e68
ssdeep: 12288:VB0z4tN/qGDb+DLUFoYkp6d1BtOkodxduog/TXJa/x82IErOJsLV/QtOMy:tCA+OoJuog/TXJmxOgI8
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11F059F6BA1D44029D0E0017AEE71F7187DFDAC74EF21E2D3814DD92E28E12D5863DAB6
sha3_384: 4d733e7334aebf393814b64bd5d77ae14b09458e846785a8169d15a6ee5f52a1f49e1d41df90985b2605e29223e61746
ep_bytes: 609ce8000000005d81ed071040008db5
timestamp: 2020-01-27 23:27:26

Version Info:

CompanyName: Adobe
FileDescription: Adobe Flash Player Control Panel Applet
FileVersion: 32,0,0,330
InternalName: Adobe Flash Player Control Panel Applet 32.0
LegalCopyright: Copyright © 1996-2020 Adobe. All Rights Reserved. Adobe and Flash are either trademarks or registered trademarks in the United States and/or other countries.
LegalTrademarks: Adobe Flash Player
OriginalFilename: FlashPlayerCPLApp.cpl
ProductName: Adobe Flash Player Control Panel Applet
ProductVersion: 32,0,0,330
Translation: 0x0409 0x04b0

Virus:Win32/Hublo.A also known as:

BkavW32.GeksoneHQcA.PE
MicroWorld-eScanWin32.Crytex.A
CAT-QuickHealW32.Hublo.A
SkyhighW32/NGVCK.a
McAfeeW32/NGVCK.a
MalwarebytesMachineLearning/Anomalous.100%
ZillyaVirus.Geksone.Win32.1
SangforTrojan.Win32.Save.a
K7AntiVirusVirus ( 0040f5911 )
K7GWVirus ( 0040f5911 )
Cybereasonmalicious.599974
BaiduWin32.Virus.Crytex.a
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32Win32/Geksone.B
APEXMalicious
TrendMicro-HouseCallPE_CRYTEX.A
ClamAVWin.Virus.Hublo-1
KasperskyVirus.Win32.Crytex.1290
BitDefenderWin32.Crytex.A
NANO-AntivirusVirus.Win32.Crytex.bzelsx
AvastWin32:Cryte
TencentVirus.Win32.Crytex.a
EmsisoftWin32.Crytex.A (B)
GoogleDetected
F-SecureMalware.W32/Crytex.1290
DrWebWin32.Siggen.15
VIPREWin32.Crytex.A
TrendMicroPE_CRYTEX.A
FireEyeGeneric.mg.8032c6a599974d3d
SophosW32/NGVCK-W
SentinelOneStatic AI – Malicious PE
VaristW32/Crytex.1290
AviraW32/Crytex.1290
MAXmalware (ai score=85)
Antiy-AVLVirus/Win32.Crytex.1290
Kingsoftmalware.kb.a.997
MicrosoftVirus:Win32/Hublo.A
XcitiumVirus.Win32.Crytex.1290@4wzy41
ArcabitWin32.Crytex.A
ZoneAlarmVirus.Win32.Crytex.1290
GDataWin32.Virus.Golem.A
CynetMalicious (score: 100)
AhnLab-V3Win32/Crytex.1290.X977
Acronissuspicious
ALYacWin32.Crytex.A
VBA32Virus.Win32.Crytex.1290
Cylanceunsafe
PandaTrj/Genetic.gen
RisingVirus.Geksone!1.AD16 (CLASSIC)
IkarusTrojan.Swrort
MaxSecureVirus.W32.Crytex.1290
FortinetW32/Geksone.B
AVGWin32:Cryte
CrowdStrikewin/malicious_confidence_100% (D)
alibabacloudVirus:Win/Hublo.A(dyn)

How to remove Virus:Win32/Hublo.A?

Virus:Win32/Hublo.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment