Spy Trojan

Should I remove “Trojan-Spy.Win32.Bobik.dab”?

Malware Removal

The Trojan-Spy.Win32.Bobik.dab is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Spy.Win32.Bobik.dab virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan-Spy.Win32.Bobik.dab?


File Info:

crc32: F167CA9B
md5: e8e53fe513a4d8ac8897953b42b18a84
name: pp.exe
sha1: 6dee3b7328a2ef97df3168d7c2c6b6cc742730d9
sha256: fd2d0c9c999a89fbab4d31f53f220b65f2e6b56a88b5029b02ca763a1e78f105
sha512: 8d2f7b565e0c81bc98cbf41c6399464bdd09917454b8d9d3a23ce218fdda5b2a0d83020053ecf8dc36bca0c24843ee5e28d58946142fff610b993de6a1dad83e
ssdeep: 24576:+Cdxte/80jYLT3U1jfsWat15/XVs/yvOIxMpSQ:Xw80cTsjkWa58OOIU
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

Trojan-Spy.Win32.Bobik.dab also known as:

MicroWorld-eScanAIT:Trojan.Agent.EJHP
FireEyeGeneric.mg.e8e53fe513a4d8ac
McAfeeArtemis!E8E53FE513A4
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 0055d4411 )
BitDefenderAIT:Trojan.Agent.EJHP
K7GWTrojan ( 0055d4411 )
CrowdStrikewin/malicious_confidence_80% (W)
Invinceaheuristic
SymantecPacked.Generic.548
APEXMalicious
AvastWin32:Trojan-gen
GDataAIT:Trojan.Agent.EJHP
KasperskyTrojan-Spy.Win32.Bobik.dab
AlibabaTrojan:Win32/Predator.11efa695
AegisLabTrojan.Win32.Bobik.l!c
RisingTrojan.Obfus/Autoit!1.C045 (CLASSIC)
Endgamemalicious (high confidence)
EmsisoftTrojan.Autoit (A)
ComodoMalware@#2wsis1fsbfmii
F-SecureTrojan.TR/Autoit.exrxx
TrendMicroTROJ_GEN.R04AC0TLD19
McAfee-GW-EditionBehavesLike.Win32.Downloader.th
SophosMal/Generic-S
IkarusTrojan.Autoit
CyrenW32/Trojan.TCMU-0514
AviraTR/Autoit.exrxx
MicrosoftTrojan:Win32/Predator.BC!MTB
ArcabitAIT:Trojan.Agent.EJHP
ZoneAlarmTrojan-Spy.Win32.Bobik.dab
AhnLab-V3Win-Trojan/Autoinj05.Exp
MAXmalware (ai score=87)
Ad-AwareAIT:Trojan.Agent.EJHP
MalwarebytesTrojan.MalPack.AutoIt
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Injector.Autoit.ESE
TrendMicro-HouseCallTROJ_GEN.R04AC0TLD19
FortinetAutoIt/Injector.ERP!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Spy.25b

How to remove Trojan-Spy.Win32.Bobik.dab?

Trojan-Spy.Win32.Bobik.dab removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment