Malware

Win32.HLLP.DeTroie malicious file

Malware Removal

The Win32.HLLP.DeTroie is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32.HLLP.DeTroie virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Win32.HLLP.DeTroie?


File Info:

name: BE06484F1DD25F8FD13E.mlw
path: /opt/CAPEv2/storage/binaries/c7394c4a9eb82bed1130a652c67b5c78603610fb9a25fe7c4fd2594b379c303a
crc32: 1CA4BFBE
md5: be06484f1dd25f8fd13e0bb8e7304cbf
sha1: b30e539399d1dc7ea46ae4f05672772a6e7abd4a
sha256: c7394c4a9eb82bed1130a652c67b5c78603610fb9a25fe7c4fd2594b379c303a
sha512: ec68e9c1019c9211b8fa4dac14024e982e7be4934053f000d2ec151d8a2489aaada0712ec3b6376ec25ab868041bb4ca2a3c7ea65bb40a8be8ccf5b22d109da1
ssdeep: 6144:TOzDInVtJQG8/rCJ4wHEiLUJ4UlpOlEfX:Tacty2JmlOE
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11984D11377F8D801E2A52670C57B4BE80E25BC56BAB1CD1F1665788E2CB0BE0D97235B
sha3_384: 4b5f12cf7c5dfaaaf08172b8cc01b4acbf790d123c7600fdac0867cc246f2a97cfa1c750afce236410c6c5c61b5484e7
ep_bytes: 7400e9fb510400000000000000000000
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Win32.HLLP.DeTroie also known as:

BkavW32.AIDetectMalware
AVGWin32:Malware-gen
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.72245479
FireEyeGeneric.mg.be06484f1dd25f8f
CAT-QuickHealW32.Detroi.A
SkyhighBehavesLike.Win32.Generic.fm
McAfeeW32/Cheval.b.dr
MalwarebytesGeneric.Malware.AI.DDS
VIPRETrojan.GenericKD.72245479
SangforSuspicious.Win32.Save.a
K7AntiVirusVirus ( 0040f5271 )
K7GWVirus ( 0040f5271 )
BitDefenderThetaGen:NN.ZelphiF.36802.xKhlaSsWuUme
VirITWin32.DeTroie.A
SymantecW32.HLLP.DeTroie
ESET-NOD32Win32/HLLP.DeTroie.E
CynetMalicious (score: 100)
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Virus.Detroie-9634218-0
KasperskyVirus.Win32.HLLP.DeTroie
BitDefenderTrojan.GenericKD.72245479
NANO-AntivirusVirus.Win32.HLLP.ggzo
RisingWorm.Cheval!1.A14A (CLASSIC)
SophosMal/Generic-S
BaiduWin32.Worm.DeTroie.a
F-SecureMalware.W32/Detroi.A
DrWebWin32.HLLP.Cheval
ZillyaVirus.DeTroie.Win32.4
TrendMicroPE_HLLPDeTroie
Trapminemalicious.high.ml.score
EmsisoftTrojan.GenericKD.72245479 (B)
SentinelOneStatic AI – Suspicious PE
JiangminWin32/HLLP.DeTroie
VaristW32/Detroi.YSRW-2447
AviraW32/Detroi.A
MAXmalware (ai score=87)
Antiy-AVLVirus/Win32.DeTroie
MicrosoftVirus:Win32/Detroie
XcitiumWin32.HLLP.DeTroie.E@2hm8
ArcabitTrojan.Generic.D44E60E7
ZoneAlarmVirus.Win32.HLLP.DeTroie
GDataTrojan.GenericKD.72245479
GoogleDetected
AhnLab-V3Virus/Win32.HLLP.C1406176
VBA32Win32.HLLP.DeTroie
Cylanceunsafe
PandaW95/HLLP.Detroie.D
TrendMicro-HouseCallPE_HLLPDeTroie
YandexWin32.HLLP.DeTroie
IkarusVirus.Win32.HLLP.DeTroie
MaxSecureVirus.Win32.HLLP.DeTroie
FortinetW32/Detroi.A
ZonerProbably Heur.ExeHeaderP
DeepInstinctMALICIOUS
alibabacloudTrojan.Win.UnkAgent

How to remove Win32.HLLP.DeTroie?

Win32.HLLP.DeTroie removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment