Trojan

Trojan.Win32.Eb.bem removal instruction

Malware Removal

The Trojan.Win32.Eb.bem is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Eb.bem virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Unconventionial language used in binary resources: Norwegian (Nynorsk)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Anomalous binary characteristics

How to determine Trojan.Win32.Eb.bem?


File Info:

crc32: 287D7E09
md5: 75d48414c2835a701a7c833809bbbcd5
name: 75D48414C2835A701A7C833809BBBCD5.mlw
sha1: be7b9660762b59188dd97575bd3082161ff03a2e
sha256: 2b51c8fd2dc74ef637da799bc9ba6f024d2f53f7f599e80549bb55d17a553446
sha512: 8dfe9f33d36e1b6a5ba5bec12a7c88c64a66dc78b1ca4850f3744813f6ec9db1136ada95fe1be4b486f68df6d4e5a1d95b347dd946ddc279e2bba03ed11a6e64
ssdeep: 98304:b+X4e0BnrNE/YOOIIZ6h9vmZgOXj/CRD5Pp9Vxui5a4tWbDyOnysJuChU6PQpoP:b+odiYO/BWQD5B9Vxui5ASoXJLU
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

InternalName: triwylbifes.acs
FileVers: 26.26.361
ProductionVersion: 1.0.22.25
Copyright: Copyrighz (C) 2020, pagkafug
TranslationUsa: 0x0772 0x0089

Trojan.Win32.Eb.bem also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.45003255
FireEyeGeneric.mg.75d48414c2835a70
Qihoo-360Win32/Trojan.9e4
McAfeeGenericRXAA-AA!75D48414C283
CylanceUnsafe
AegisLabTrojan.Win32.Generic.4!c
SangforMalware
K7AntiVirusTrojan ( 005749c91 )
BitDefenderTrojan.GenericKD.45003255
K7GWTrojan ( 005749c91 )
BitDefenderThetaGen:NN.ZexaF.34700.@pKfa0DVdEaG
CyrenW32/Kryptik.CRY.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HIFB
APEXMalicious
AvastWin32:DropperX-gen [Drp]
ClamAVWin.Packed.Bulz-9808185-0
KasperskyTrojan.Win32.Eb.bem
AlibabaTrojan:Win32/Glupteba.59e21f54
Ad-AwareTrojan.GenericKD.45003255
EmsisoftTrojan.GenericKD.45003255 (B)
F-SecureTrojan.TR/AD.GoCloudnet.qwkuh
DrWebTrojan.DownLoader36.28337
McAfee-GW-EditionBehavesLike.Win32.Trojan.rc
SophosMal/Generic-S
IkarusTrojan.Win32.Crypt
JiangminTrojan.Eb.fr
WebrootW32.Trojan.Gen
AviraTR/AD.GoCloudnet.qwkuh
MAXmalware (ai score=86)
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Glupteba.NK!MTB
GridinsoftTrojan.Win32.Kryptik.oa
ArcabitTrojan.Generic.D2AEB1F7
AhnLab-V3Trojan/Win32.Glupteba.R357746
ZoneAlarmTrojan.Win32.Eb.bem
GDataTrojan.GenericKD.45003255
CynetMalicious (score: 100)
Acronissuspicious
VBA32BScope.Trojan.Glupteba
ALYacTrojan.GenericKD.45003255
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
RisingTrojan.Kryptik!8.8 (TFE:5:G6GudicZAaE)
SentinelOneStatic AI – Malicious PE
FortinetW32/Kryptik.HIFA!tr
AVGWin32:DropperX-gen [Drp]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Win32.Eb.bem?

Trojan.Win32.Eb.bem removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment