Trojan

Should I remove “Trojan.Win32.Mansabo.edf”?

Malware Removal

The Trojan.Win32.Mansabo.edf is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Mansabo.edf virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Trojan.Win32.Mansabo.edf?


File Info:

crc32: 04487411
md5: 08232fb7839bc6355aced7d3dcdd4333
name: mini.png
sha1: 2e77f1a1df41bb94805e98df427977f15a242a4a
sha256: 83e8cb69d5c2d2721c6bfef608601f734b95f9fdce0b797a93eb7777e5843a3d
sha512: 848d28b57f26abf18d8865e82f2e200587777d8d3944cb742ad95763724a025f8eb6a09a05cb1ba46e333e2198f2a6a3f1fa2aa92f2e51654fca386a94c0a4c5
ssdeep: 6144:OL3DL6SQw+I/6jUDysMhj6AnjQr3DHYlbtUnQrvIdO74oA7oTkXVNaj3:o6SQw+g6qysMhdjQKbtUQ7IirLTeAj3
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: bsOctButton
FileVersion: 2.0.0.24
CompanyName: Dp look
ProductName: BadSoft bsOctControls
ProductVersion: 2.0.0.24
FileDescription: Vhatsapp dp for Stylish boys Images
OriginalFilename: bsOctButton.exe

Trojan.Win32.Mansabo.edf also known as:

MicroWorld-eScanTrojan.Agent.EKQZ
FireEyeGeneric.mg.08232fb7839bc635
McAfeeGenericRXAA-AA!08232FB7839B
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
CrowdStrikewin/malicious_confidence_60% (D)
BitDefenderTrojan.Agent.EKQZ
BitDefenderThetaGen:NN.ZevbaF.34084.Pm1@aKVb!Ifm
ESET-NOD32a variant of Win32/Injector.EKFL
GDataTrojan.Agent.EKQZ
KasperskyTrojan.Win32.Mansabo.edf
RisingTrojan.Trickbot!8.E313 (C64:YzY0OijDw/ETnmEY)
Endgamemalicious (high confidence)
EmsisoftTrojan.Agent.EKQZ (B)
F-SecureTrojan.TR/AD.TrickBot.qkmjv
Invinceaheuristic
Trapminemalicious.moderate.ml.score
APEXMalicious
CyrenW32/Injector.YF.gen!Eldorado
WebrootW32.Trojan.Trickbot
AviraTR/AD.TrickBot.qkmjv
ArcabitTrojan.Agent.EKQZ
AhnLab-V3Trojan/Win32.Trickbot.C3974822
ZoneAlarmTrojan.Win32.Mansabo.edf
MAXmalware (ai score=88)
PandaTrj/Emotet.A
FortinetW32/GenKryptik.ECFC!tr
Ad-AwareTrojan.Agent.EKQZ
Cybereasonmalicious.1df41b
Qihoo-360HEUR/QVM03.0.DDF7.Malware.Gen

How to remove Trojan.Win32.Mansabo.edf?

Trojan.Win32.Mansabo.edf removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment