Trojan

Trojan.GluptebaPMF.S23524894 removal tips

Malware Removal

The Trojan.GluptebaPMF.S23524894 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.GluptebaPMF.S23524894 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Arabic (Libya)
  • The binary likely contains encrypted or compressed data.
  • Detects Sandboxie through the presence of a library
  • Detects Avast Antivirus through the presence of a library
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.GluptebaPMF.S23524894?


File Info:

crc32: 27951DE6
md5: 1dbdff1bf6caa2a400d0d4f942144aa2
name: 1DBDFF1BF6CAA2A400D0D4F942144AA2.mlw
sha1: 235ac0f735d171ccacb82a0b18c9b4776a9c8e91
sha256: 1752cb67e0db921ceb0052b47128ddd3a0e063cd9fea13d3a4e1108e8df60a46
sha512: 2a68626e06edec416a13fb6dd9782267691deab14eff20bc2bf60c014cecfdd5ece035459a987a7b39e6ab9912ff3bbdc78e110cae7066e792cecf9f4b57de50
ssdeep: 1536:otJEIKXpaPCttkRDVDEjvxponticdD5k/ADPMxuiDOBeNDeya5Y4dC8:0JfKsZE7xponticdD5JyDOBACrY5
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: sajbmoimizu.ise
ProductVersion: 8.79.590.38
Copyright: Copyrighz (C) 2021, fudkagat
Translation: 0x0129 0x00a9

Trojan.GluptebaPMF.S23524894 also known as:

K7AntiVirusRiskware ( 00584baa1 )
Elasticmalicious (high confidence)
DrWebTrojan.Siggen15.15299
CynetMalicious (score: 100)
CAT-QuickHealTrojan.GluptebaPMF.S23524894
ALYacGen:Heur.Mint.Titirez.hq0@cDxh@vmO
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (D)
K7GWRiskware ( 00584baa1 )
Cybereasonmalicious.735d17
CyrenW32/Kryptik.EWJ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HMPQ
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
ClamAVWin.Packed.Generic-9896741-0
KasperskyVHO:Backdoor.Win32.Convagent.gen
BitDefenderGen:Heur.Mint.Titirez.hq0@cDxh@vmO
MicroWorld-eScanGen:Heur.Mint.Titirez.hq0@cDxh@vmO
Ad-AwareGen:Heur.Mint.Titirez.hq0@cDxh@vmO
SophosMal/Generic-S + Troj/Krypt-BO
F-SecureTrojan.TR/AD.Nekark.krkcj
BitDefenderThetaGen:NN.ZexaF.34294.hq0@aCxh@vmO
McAfee-GW-EditionBehavesLike.Win32.Emotet.ch
FireEyeGeneric.mg.1dbdff1bf6caa2a4
EmsisoftTrojan.Crypt (A)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.Mokes.eop
AviraTR/AD.Nekark.krkcj
Antiy-AVLTrojan/Win32.Agent
MicrosoftTrojan:Win32/Azorult.RMA!MTB
ArcabitTrojan.Mint.Titirez.EAD1AF0
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
GDataGen:Heur.Mint.Titirez.hq0@cDxh@vmO
AhnLab-V3CoinMiner/Win.Glupteba.R442682
Acronissuspicious
McAfeeLockbit-FSWW!1DBDFF1BF6CA
MAXmalware (ai score=86)
VBA32BScope.Backdoor.Mokes
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
RisingMalware.Heuristic!ET#97% (RDMK:cmRtazozbBoGR9RM3IWSkDtOwyV1)
IkarusTrojan-Ransom.StopCrypt
FortinetW32/Kryptik.DZIC!tr
AVGWin32:MalwareX-gen [Trj]

How to remove Trojan.GluptebaPMF.S23524894?

Trojan.GluptebaPMF.S23524894 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment