Malware

Win32/KillAV.NHN removal tips

Malware Removal

The Win32/KillAV.NHN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/KillAV.NHN virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Binary file triggered YARA rule
  • Anomalous binary characteristics

How to determine Win32/KillAV.NHN?


File Info:

name: 30ACB6E3F78E015A6DC3.mlw
path: /opt/CAPEv2/storage/binaries/1ab4a7f0c50bd70152fc60b57273713d478a554e9432d7f7521b0fc09bc51f91
crc32: AEE763D4
md5: 30acb6e3f78e015a6dc3cdc0609953e2
sha1: f0057604585084465708fed31f0d3929008ddf33
sha256: 1ab4a7f0c50bd70152fc60b57273713d478a554e9432d7f7521b0fc09bc51f91
sha512: 0cafa9ef6dded78a8caf74efdf415f3a5fea0a239ef7748ad6ba2829274c8b7da4c4af256429eb8e805c918225396a56649cf2c01b8f85f3604c57174e1c25f4
ssdeep: 6144:aBW3BJ4nWrDKDCA2vHl4sN+GqyQmpG5in03LXQnyDQ9yWdBqI7NO2kZI7IxI82Um:uZ7RfEvzN9PeRdtpHeIZ5uF
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1FA748E61AC0183B8D8D71932C5BD7B6CAA6ECA13132DB5D377C518548E285E3B9383DB
sha3_384: 63e9542e2988c44ee01213ea1637920223b6d4218097b69c152eeec09e2f7ea4dfbd3e2ae3e92c5db22c965d5d0f0b30
ep_bytes: 8bff558bec837d0c017505e87bcb0000
timestamp: 2013-01-16 22:29:31

Version Info:

0: [No Data]

Win32/KillAV.NHN also known as:

LionicTrojan.Win32.Bredolab.m!c
SkyhighArtemis!Trojan
SymantecSecurityRisk.gen1
ESET-NOD32Win32/KillAV.NHN
CynetMalicious (score: 100)
DrWebTrojan.Hottrend.15
ZillyaBackdoor.Bredolab.Win32.14772
KingsoftWin32.Troj.Undef.a
XcitiumMalware@#76qbszwl57tk
GoogleDetected
McAfeeArtemis!30ACB6E3F78E
VBA32Backdoor.Bredolab
RisingTrojan.Generic@AI.89 (RDML:AzOGUYkSeAjosmVGnPMnzQ)
IkarusTrojan.Win32.KillAV
FortinetW32/Bredolab.NHN!tr.bdr
DeepInstinctMALICIOUS
alibabacloudTrojan:Win/KillAV.NHN

How to remove Win32/KillAV.NHN?

Win32/KillAV.NHN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment