Trojan

Trojan.Win32.Eb.bpm removal guide

Malware Removal

The Trojan.Win32.Eb.bpm is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Eb.bpm virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Unconventionial language used in binary resources: Serbian
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Trojan.Win32.Eb.bpm?


File Info:

crc32: A60E5AA7
md5: 608184c55282cd12d196db19c0ee32ad
name: 608184C55282CD12D196DB19C0EE32AD.mlw
sha1: ac641e6b75ebccb7599db8245301da80c05b0888
sha256: eaaef494df709ce4ac4dce3913594ebec0985944f63e8e8a6c51994fffb98010
sha512: b1a56e56fef393a43f87cb88acb12d5dc4411e1fb62dffb3256e447faf6c923e6a388a2997a206034f351925fc8844d6d7b27afff8a64c217380ed87deeee252
ssdeep: 98304:lyIFk/gB+rLHoo6T6O9Crp3tZQ48y9E2WyG7/nVyLFgF+z3zxmeOleMUQ3KMHDD:8JvQ6rp3tD9A/VwFzjQTHDsoiO3Gfe6
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

InternalName: triwilbifor.occ
FileVersion: 6.26.343
Copyright: Copyrighz (C) 2020, wodkagude
ProductVersion: 1.13.21
TranslationUsa: 0x0173 0x00e1

Trojan.Win32.Eb.bpm also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.45557033
FireEyeGeneric.mg.608184c55282cd12
McAfeeArtemis!608184C55282
CylanceUnsafe
AegisLabTrojan.Win32.Malicious.4!c
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.45557033
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.b75ebc
CyrenW32/Kryptik.DBB.gen!Eldorado
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTrojanSpy.Win32.RULTAZO.USMANAK21
AvastWin32:TrojanX-gen [Trj]
KasperskyTrojan.Win32.Eb.bpm
AlibabaTrojan:Win32/Azorult.b67a2647
RisingTrojan.Kryptik!8.8 (TFE:5:yLLlZ3TYilR)
Ad-AwareTrojan.GenericKD.45557033
EmsisoftTrojan.GenericKD.45557033 (B)
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojanSpy.Win32.RULTAZO.USMANAK21
McAfee-GW-EditionBehavesLike.Win32.Trojan.rc
SophosMal/Generic-S
IkarusTrojan.SuspectCRC
AviraHEUR/AGEN.1122056
MicrosoftTrojan:Win32/Azorult.MU!MTB
GridinsoftTrojan.Win32.Packed.oa
ArcabitTrojan.Generic.D2B72529
ZoneAlarmTrojan.Win32.Eb.bpm
GDataWin32.Trojan.RanumBot.BYQON3
CynetMalicious (score: 100)
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34780.@pKfaWMt!ZdG
ALYacTrojan.GenericKD.45557033
MAXmalware (ai score=85)
VBA32Backdoor.Mokes
MalwarebytesGeneric.Trojan.Malicious.DDS
PandaTrj/GdSda.A
APEXMalicious
ESET-NOD32WinGo/RanumBot.J
YandexTrojan.Igent.bVb3b1.20
SentinelOneStatic AI – Malicious PE
FortinetW32/Kryptik.HIRY!tr
WebrootW32.Trojan.Gen
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (D)
Qihoo-360Trojan.Generic

How to remove Trojan.Win32.Eb.bpm?

Trojan.Win32.Eb.bpm removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment