Trojan

Trojan.Rupest removal instruction

Malware Removal

The Trojan.Rupest is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Rupest virus can do?

  • At least one process apparently crashed during execution
  • Dynamic (imported) function loading detected
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs

Related domains:

wpad.local-net

How to determine Trojan.Rupest?


File Info:

name: 8C3B028B851F1992EEF0.mlw
path: /opt/CAPEv2/storage/binaries/91fd6300a6e56e51b94d8d79030410398c8aee50d89c304e4f4b79e1343954f6
crc32: EA5406EE
md5: 8c3b028b851f1992eef0dadf4a38299c
sha1: 566911169e3f0ec3e27360489ed63f037955551d
sha256: 91fd6300a6e56e51b94d8d79030410398c8aee50d89c304e4f4b79e1343954f6
sha512: c43af366e8bede25cdbab783535894f8be7923fe0413eac504ffe6d0935f731eb9f8cf652b1fcab12d257321afd95ba2eee89936c71c0ed9668c57b298a05c34
ssdeep: 12288:ovzvrcV/H8rq4zqVLQh4p3COWswTKmyZgh90gJIwfT45dwzXN:ovzv+pcqVLQh4COo0ggdGN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C345221479A0D6B3E465A2F50060C5E1C86B6DB217B1C8933FD84E6FA7223DD8B2B357
sha3_384: 75ca686f6c1ab9a6d08ef88fa5748644c5478487350966df7009ed69ca5ec4d02be6f2ccf7937c75ba6ef59a86831dd9
ep_bytes: e8f6150000e978feffff8bff558bec8b
timestamp: 2015-03-12 06:36:33

Version Info:

CompanyName: TrueCrypt Foundation
FileDescription: TrueCrypt
FileVersion: 7.1a
LegalTrademarks: TrueCrypt
OriginalFilename: TrueCrypt.exe
ProductName: TrueCrypt
ProductVersion: 7.1a
Translation: 0x0409 0x04b0

Trojan.Rupest also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebBackDoor.IRC.NgrBot.42
MicroWorld-eScanGen:Trojan.Dresmon.Gen.1
FireEyeGeneric.mg.8c3b028b851f1992
CAT-QuickHealRansom.Crowti.A4
ALYacGen:Trojan.Dresmon.Gen.1
CylanceUnsafe
SangforTrojan.Win32.Save.a
Cybereasonmalicious.b851f1
BitDefenderThetaGen:NN.ZexaF.34294.jr0@amPSwEe
CyrenW32/Agent.XL.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.DBMP
KasperskyVHO:Backdoor.Win32.Convagent.gen
BitDefenderGen:Trojan.Dresmon.Gen.1
NANO-AntivirusTrojan.Win32.Blocker.dpceni
AvastWin32:CryptoWall-R [Trj]
TencentWin32.Trojan.Dresmon.Ebhb
Ad-AwareGen:Trojan.Dresmon.Gen.1
SophosML/PE-A + Troj/Wonton-RS
VIPRETrojan.Win32.Kuluoz.i (v)
EmsisoftGen:Trojan.Dresmon.Gen.1 (B)
IkarusTrojan.Win32.Crypt
GDataGen:Trojan.Dresmon.Gen.1
JiangminTrojan.Generic.fjroz
AviraTR/Crypt.XPACK.Gen2
Antiy-AVLTrojan/Generic.ASMalwS.F1F918
ArcabitTrojan.Dresmon.Gen.1
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Zbot.R137423
McAfeeArtemis!8C3B028B851F
MAXmalware (ai score=89)
MalwarebytesTrojan.Rupest
APEXMalicious
RisingMalware.Heuristic!ET#95% (RDMK:cmRtazqGGAHNnWMEYe5k+Wcrdv/l)
YandexTrojan.GenAsa!ZuhuJjLIIcY
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Injector.CBUB!tr
AVGWin32:CryptoWall-R [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (D)
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan.Rupest?

Trojan.Rupest removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment