Trojan

About “Trojan.Win32.Mansabo.eay” infection

Malware Removal

The Trojan.Win32.Mansabo.eay is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Mansabo.eay virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Romanian
  • The binary likely contains encrypted or compressed data.
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Trojan.Win32.Mansabo.eay?


File Info:

crc32: EB14D899
md5: 4e134d007e4aacef651653f8e308dfdc
name: mini.png
sha1: 74f54d3411f242c22a01cf736a3b6b7c63919a54
sha256: c6d8b31dc2bdf485035bad0328f05cac8c58a66c384e97ff502c7642c8aa393f
sha512: abe0602d7670cdbc4d2f055fe78f4f1f805c4b5f4b8386011be1a05ea097e262709bcbfabf9062e0169e7850adef6daedb788a8cd29ca21f6f4df24d061bfe4b
ssdeep: 6144:vGg3Fx1n8rszp7MBeQ905YmOJD9fT2tQr7zsvqqAj6:OMznfzVN5YmC9fTfYvAu
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: Watching
InternalName: bitmapmnu
FileVersion: 1.0.0.22
Comments: easy to understand, cause thats the way
ProductName: bitmapmnu
ProductVersion: 1.0.0.22
OriginalFilename: bitmapmnu.exe

Trojan.Win32.Mansabo.eay also known as:

BkavW32.AIDetectVM.malware
MicroWorld-eScanTrojan.Agent.EJST
FireEyeGeneric.mg.4e134d007e4aacef
CylanceUnsafe
SangforMalware
BitDefenderTrojan.Agent.EJST
Cybereasonmalicious.411f24
BitDefenderThetaGen:NN.ZevbaF.33558.wm3@ae!1YVlO
SymantecML.Attribute.HighConfidence
APEXMalicious
GDataTrojan.Agent.EJST
KasperskyTrojan.Win32.Mansabo.eay
Endgamemalicious (high confidence)
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
Trapminemalicious.moderate.ml.score
EmsisoftTrojan.Agent.EJST (B)
MaxSecureTrojan.Malware.300983.susgen
ArcabitTrojan.Agent.EJST
ZoneAlarmTrojan.Win32.Mansabo.eay
Acronissuspicious
MAXmalware (ai score=84)
Ad-AwareTrojan.Agent.EJST
ESET-NOD32a variant of Win32/Injector.EJTI
SentinelOneDFI – Malicious PE
WebrootW32.Trojan.Gen
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360HEUR/QVM03.0.6785.Malware.Gen

How to remove Trojan.Win32.Mansabo.eay?

Trojan.Win32.Mansabo.eay removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment