Backdoor

About “Backdoor:Win32/Trubsil.C” infection

Malware Removal

The Backdoor:Win32/Trubsil.C is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor:Win32/Trubsil.C virus can do?

  • Unconventionial language used in binary resources: Danish
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Backdoor:Win32/Trubsil.C?


File Info:

crc32: 36D6977D
md5: 2408ecb8474dd2a55225a3992f3bce0c
name: 2408ECB8474DD2A55225A3992F3BCE0C.mlw
sha1: d30ad5b9593ee96cb01fbf520bde0116f9df4176
sha256: 96e6b4ca98ea70e2aee2f9fbea452ac74f9f41a27657cce5d1eee2f8ea0b23b3
sha512: 82b4c1ebc1c58214a4f567c68a4c85e815ee7af32601b7eb096999c0f88410730aca5cf41a21a3b328db7f13de5e012d0b0cbec7896b0790fdb9c3d53cea2843
ssdeep: 6144:6YhA2N2twUgid8KyYq77YsEs5QvMdImHe9AS+16iaYT61jSJSi:vA2N2pqKQ3xFdImRnT61USi
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: (C) 2007-2015
CompanyName: Valve Corporation
LegalTrademarks: (C) 2007-2015
ProductName: Bklink
ProductVersion: 8.9.29.9
FileDescription: Sbe Panel Interrelate Bmbing Cmparable
OriginalFilename: Bklink
Translation: 0x0406 0x04b0

Backdoor:Win32/Trubsil.C also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 00519d161 )
Elasticmalicious (high confidence)
CynetMalicious (score: 85)
ALYacTrojan.GenericKD.6121463
CylanceUnsafe
ZillyaTrojan.Foreign.Win32.59706
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaRansom:Win32/Foreign.e95b1a08
K7GWTrojan ( 00519d161 )
Cybereasonmalicious.8474dd
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Generik.NHCOBKT
APEXMalicious
AvastFileRepMalware
KasperskyTrojan-Ransom.Win32.Foreign.noyz
BitDefenderTrojan.GenericKD.6121463
NANO-AntivirusTrojan.Win32.GenericKD.etumaq
MicroWorld-eScanTrojan.GenericKD.6121463
TencentWin32.Trojan.Foreign.Hnky
Ad-AwareTrojan.GenericKD.6121463
SophosMal/Generic-S
ComodoMalware@#2o4ebmihokoro
F-SecureHeuristic.HEUR/AGEN.1113063
BitDefenderThetaGen:NN.ZexaF.34628.uu0@a86SvKlG
VIPRETrojan.Win32.Generic!BT
TrendMicroMal_MiliCry-1h
McAfee-GW-EditionBehavesLike.Win32.Dropper.fc
FireEyeGeneric.mg.2408ecb8474dd2a5
EmsisoftTrojan.GenericKD.6121463 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1113063
eGambitUnsafe.AI_Score_99%
MicrosoftBackdoor:Win32/Trubsil.C
ArcabitTrojan.Generic.D5D67F7
AegisLabTrojan.Multi.Generic.4!c
ZoneAlarmTrojan-Ransom.Win32.Foreign.noyz
GDataTrojan.GenericKD.6121463
AhnLab-V3Win-Trojan/Sagecrypt.Gen
Acronissuspicious
McAfeeGeneric.clm
MAXmalware (ai score=99)
VBA32BScope.TrojanRansom.Locky
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/CI.A
TrendMicro-HouseCallMal_MiliCry-1h
RisingTrojan.Generic@ML.93 (RDMK:ktNaqaj3et74/NsR58w2kg)
IkarusTrojan.SuspectCRC
FortinetW32/Foreign.NOYZ!tr
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Foreign.HgIASOMA

How to remove Backdoor:Win32/Trubsil.C?

Backdoor:Win32/Trubsil.C removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment