Malware

Should I remove “BrowserModifier:Win32/Satrap!bit”?

Malware Removal

The BrowserModifier:Win32/Satrap!bit is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BrowserModifier:Win32/Satrap!bit virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine BrowserModifier:Win32/Satrap!bit?


File Info:

name: AF519981B7ED8391789E.mlw
path: /opt/CAPEv2/storage/binaries/7c2047894031f774feca1eca2250b62647cc4227834c1c1ff6436d7a31eeb641
crc32: FA5DBCCF
md5: af519981b7ed8391789e5d7658404357
sha1: 88dd8d5214efec54a975b51bfc899fec04845a73
sha256: 7c2047894031f774feca1eca2250b62647cc4227834c1c1ff6436d7a31eeb641
sha512: f3032d1594a8d60bc21b55ff6ea6da3acdc8dbed24b956fb6386c4665bfac61ff32e645cd4a1b21d61550ceb164d76ffb36fceeda7ee7db4cb34f85ea5100260
ssdeep: 24576:WW5KTLZKwmzPN5TfAfOY+LPuR93C5Et0EO7SrCKh58eE60:WW5KT9vUl4jgPYs5k2mWm5r
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B135124B7C88C5E6E0A05EB6CCF6477B37A1F19709340A533AA89E14E5D60D53A273CE
sha3_384: 9bccb5e460c1282bcfb8f1f0f3724046359c8afa1960c8154e09dd82cd0b0a9cc566eb40414c7cfc66f90152a2b9bda0
ep_bytes: 558bec6aff68d0fe4000685aae400064
timestamp: 2016-08-19 07:52:50

Version Info:

0: [No Data]

BrowserModifier:Win32/Satrap!bit also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Recodrop.tnsY
tehtrisGeneric.Malware
DrWebTrojan.StartPage1.28495
MicroWorld-eScanTrojan.Generic.32953794
ClamAVWin.Trojan.Agent-5744608-0
FireEyeTrojan.Generic.32953794
McAfeeGenericR-GPH!AF519981B7ED
Cylanceunsafe
ZillyaDropper.Recodrop.Win32.1946
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 004dcc0c1 )
AlibabaMalware:Win32/km_24d84.None
K7GWTrojan ( 004dcc0c1 )
CrowdStrikewin/malicious_confidence_90% (W)
VirITTrojan.Win32.Startpage.ZFF
CyrenW32/S-4bec4b62!Eldorado
SymantecSMG.Heur!gen
Elasticmalicious (high confidence)
APEXMalicious
CynetMalicious (score: 100)
BitDefenderTrojan.Generic.32953794
AvastOther:Malware-gen [Trj]
TencentMalware.Win32.Gencirc.10b13bbe
EmsisoftTrojan.Generic.32953794 (B)
VIPRETrojan.Generic.32953794
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataTrojan.Generic.32953794
JiangminTrojanDropper.Recodrop.cg
Antiy-AVLGrayWare/Win32.StartPage.ans
XcitiumTrojWare.Win32.StartPage.ANS@68rk6q
ArcabitTrojan.Generic.D1F6D5C2
MicrosoftBrowserModifier:Win32/Satrap!bit
GoogleDetected
AhnLab-V3PUP/Win32.BundleInstaller.R187159
ALYacTrojan.Generic.32953794
MAXmalware (ai score=83)
MalwarebytesGeneric.Malware.AI.DDS
RisingTrojan.StartPage!1.A72D (CLASSIC)
IkarusBHO.Win32.Satrap
MaxSecureTrojan.Malware.9331922.susgen
FortinetW32/Satrap.BHO!tr
AVGOther:Malware-gen [Trj]
Cybereasonmalicious.214efe
DeepInstinctMALICIOUS

How to remove BrowserModifier:Win32/Satrap!bit?

BrowserModifier:Win32/Satrap!bit removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment