Worm

Worm:Win32/Bruhorn.B information

Malware Removal

The Worm:Win32/Bruhorn.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm:Win32/Bruhorn.B virus can do?

  • Executable code extraction
  • Checks for the presence of known windows from debuggers and forensic tools
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Worm:Win32/Bruhorn.B?


File Info:

crc32: 0C4BB1C9
md5: a3d98ef185032097f2103e27559d7b77
name: A3D98EF185032097F2103E27559D7B77.mlw
sha1: c95e3dc0d9aa6d1035e9b2a0af1aef89e3831123
sha256: 4dadb5060d04fda65bb4a9768cfeb2135cfca08560d18f3db6f1c8a64ea82a05
sha512: da808a9b30284c5f8866b61bc23deded028f643f91e4b3c577800c701866af1f7329d39429e628bbe5599f270b0ec75bad7d8aa4816522de36e68894b9238c3b
ssdeep: 3072:Ax/5F/E7tEf04+p+tYlpJH7iXQNgggHlxDZiYLK5Wph:AxhF4cZ+wWJH7igNgjdFKs
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: DATA
FileVersion: 0.00.0020
CompanyName: Oncom
ProductName: xk
ProductVersion: 0.00.0020
OriginalFilename: DATA.exe

Worm:Win32/Bruhorn.B also known as:

BkavW32.FamVT.RegVdb.Trojan
Elasticmalicious (high confidence)
ClamAVWin.Worm.Untukmu-5949608-0
FireEyeGeneric.mg.a3d98ef185032097
CAT-QuickHealWorm.Ludbaruma.A3
McAfeeW32/Rontokbro.gen@MM
CylanceUnsafe
SangforRansom.Win32.Foreign_11.se
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderTrojan.VB.OJW
K7GWP2PWorm ( 0050fa4b1 )
K7AntiVirusTrojan ( 0040f6141 )
BaiduWin32.Worm.VB.k
CyrenW32/S-2ee348b2!Eldorado
SymantecTrojan.Gen.2
APEXMalicious
AvastWin32:WormX-gen [Wrm]
CynetMalicious (score: 100)
KasperskyTrojan-Ransom.Win32.Blocker.mtgn
NANO-AntivirusTrojan.Win32.Regrun.dxtouo
ViRobotWorm.Win32.Regrun.Gen.A
MicroWorld-eScanTrojan.VB.OJW
RisingRansom.Blocker!8.12A (TFE:dGZlOgWKyi/lv9zO9g)
Ad-AwareTrojan.VB.OJW
SophosMal/Generic-R + W32/Mato-N
ComodoTrojWare.Win32.Injector.FZZA@57zyc0
F-SecureTrojan.TR/Agent.gdnw
DrWebTrojan.DownLoader7.3730
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Rontokbro.cm
MaxSecureTrojan-Ransom.Win32.Blocker.kpuo
EmsisoftTrojan.VB.OJW (B)
IkarusTrojan.AgentMB.VB
JiangminTrojan.Blocker.tav
AviraTR/Agent.gdnw
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.Unknown
MicrosoftWorm:Win32/Bruhorn.B
ArcabitTrojan.VB.OJW
SUPERAntiSpywareTrojan.Agent/Gen-Backdoor
ZoneAlarmTrojan-Ransom.Win32.Blocker.mtgn
GDataWin32.Worm.Ludbaruma.A
AhnLab-V3Backdoor/Win32.IRCBot.R1456
Acronissuspicious
VBA32TScope.Trojan.VB
ALYacTrojan.VB.OJW
TACHYONTrojan/W32.VB-Ludbaruma.Zen.B
MalwarebytesGeneric.Trojan.Malicious.DDS
PandaTrj/Genetic.gen
ZonerTrojan.Win32.70598
ESET-NOD32Win32/VB.ORD
TrendMicro-HouseCallTSPY_LUDBARUMA_BK083EDB.TOMC
TencentTrojan-Ransom.Win32.Blocker.kalr
YandexTrojan.GenAsa!3Dzo+yWZn14
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_100%
FortinetW32/Regrun.PKE!tr
BitDefenderThetaAI:Packer.80EEED3E1D
AVGWin32:WormX-gen [Wrm]
Paloaltogeneric.ml
Qihoo-360Win32/Worm.FakeFolder.HU

How to remove Worm:Win32/Bruhorn.B?

Worm:Win32/Bruhorn.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment