Trojan

Trojan.Win32.Eb.bib information

Malware Removal

The Trojan.Win32.Eb.bib is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Eb.bib virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Expresses interest in specific running processes
  • Unconventionial language used in binary resources: Norwegian (Nynorsk)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Checks the CPU name from registry, possibly for anti-virtualization
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Trojan.Win32.Eb.bib?


File Info:

crc32: B6D4C7F5
md5: 7f6736c9e2b9fb4b022219f040ec497b
name: 7F6736C9E2B9FB4B022219F040EC497B.mlw
sha1: 3786de6c02a848188f7546818d87642b641b6d12
sha256: 6c9f1383c9b24e1c6f6441de5e7f9fa2831a9652d0c9cec70b530b5f46782d1d
sha512: 4b70b9c7a01c486758aaf6bfd25976b3a2e2456ae94b96cfb72c95b60f3273c88cd61555e792b906fd010b053dd363d54979cf7b925103f01df4e1089b6154cd
ssdeep: 98304:e80vHmnHaeBlZYX0xQ2ao0RIw7oM5kN+oCnNhT7Ulsg84Kde0Crw7Xmc7Tffj92:edvG6eVO0iiodxeY577omiZpTJn2ylb
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

InternalName: triwilbifor.acs
FileVersion: 6.26.361
Copyright: Copyrighz (C) 2020, vodkafuck
ProductVersion: 1.0.15
TranslationUsa: 0x0273 0x04d3

Trojan.Win32.Eb.bib also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.35955062
FireEyeGeneric.mg.7f6736c9e2b9fb4b
ALYacTrojan.GenericKD.35955062
CylanceUnsafe
AegisLabHacktool.Win32.ArchSMS.lsIq
SangforMalware
BitDefenderTrojan.GenericKD.35955062
BitDefenderThetaGen:NN.ZexaF.34700.@pKfaCuG3xjG
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HIML
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan.Win32.Eb.bib
AlibabaTrojan:Win32/Kryptik.d568b5b3
RisingTrojan.Kryptik!1.CFEE (CLASSIC)
Ad-AwareTrojan.GenericKD.35955062
EmsisoftTrojan.GenericKD.35955062 (B)
F-SecureTrojan.TR/AD.GoCloudnet.ciszv
McAfee-GW-EditionBehavesLike.Win32.Trojan.rc
SophosMal/Generic-S
IkarusTrojan.Win32.Krypt
WebrootW32.Malware.Gen
AviraTR/AD.GoCloudnet.ciszv
MAXmalware (ai score=88)
MicrosoftTrojan:Win32/Azorult.FW!MTB
GridinsoftTrojan.Win32.Packed.oa
ArcabitTrojan.Generic.D224A176
ZoneAlarmTrojan.Win32.Eb.bib
GDataTrojan.GenericKD.35955062
CynetMalicious (score: 100)
Acronissuspicious
McAfeeGenericRXAA-AA!7F6736C9E2B9
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
TencentWin32.Trojan.Eb.Akpj
SentinelOneStatic AI – Malicious PE
FortinetW32/Kryptik.HIFA!tr
AVGWin32:Malware-gen
AvastWin32:Malware-gen
CrowdStrikewin/malicious_confidence_80% (D)
Qihoo-360Generic/HEUR/QVM11.1.4D07.Malware.Gen

How to remove Trojan.Win32.Eb.bib?

Trojan.Win32.Eb.bib removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment