Trojan

TrojanDownloader:Win32/Berbew!pz malicious file

Malware Removal

The TrojanDownloader:Win32/Berbew!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Berbew!pz virus can do?

  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine TrojanDownloader:Win32/Berbew!pz?


File Info:

name: FDBBCD411C9936931CC2.mlw
path: /opt/CAPEv2/storage/binaries/e087dbb90f5277c3461d17a507fedd0ee1bcef77fcb968eab115b7c0104ec296
crc32: 04C80F3E
md5: fdbbcd411c9936931cc2fbd58a498d70
sha1: 877d130c99f43199989081dec9a8884932d26ced
sha256: e087dbb90f5277c3461d17a507fedd0ee1bcef77fcb968eab115b7c0104ec296
sha512: c8e93e8365c66b81e564c35bf663a6fb0a43e1c8e7fff66770dbf4db00b1c0840555f51c03b3c2b6ce6c066aea43e218b61f6d7ce3c7093a034e9c2c64637800
ssdeep: 1536:7SZszpCLkcr5LadT2pPKYy6fWdYsJifTduD4oTxw:uizpEpPKYyTdYsJibdMTxw
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T112637EBF637A16B2E4C313712677C8D2B72852691FAB78515494C0FE2FE3B6852F9100
sha3_384: b26bde795fe2c5a5b189f89640d78cf2c62195d7a7c129d7307920e08f8d9336caeb0335ba1ffb7dc96db11929ca85f0
ep_bytes: 909090906090b80010400090bbf87e40
timestamp: 2027-09-06 18:29:59

Version Info:

0: [No Data]

TrojanDownloader:Win32/Berbew!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Qukart.l!c
tehtrisGeneric.Malware
DrWebBackDoor.HangUp.43832
MicroWorld-eScanBackdoor.Hangup.B
FireEyeGeneric.mg.fdbbcd411c993693
SkyhighBehavesLike.Win32.Generic.kh
McAfeeTrojan-FVOJ!FDBBCD411C99
Cylanceunsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
AlibabaTrojanSpy:Win32/Qukart.45e8a0eb
K7GWTrojan ( 005780dd1 )
Cybereasonmalicious.c99f43
ArcabitBackdoor.Hangup.B
BitDefenderThetaAI:Packer.59DA40B021
VirITWorm.Win32.Berbew.G
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Spy.Qukart
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Crypted-29
KasperskyTrojan-Spy.Win32.Qukart.af
BitDefenderBackdoor.Hangup.B
NANO-AntivirusTrojan.Win32.Qukart.iweegm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan.Win32.Pornoasset.a
TACHYONBackdoor/W32.Padodor
EmsisoftBackdoor.Hangup.B (B)
F-SecureTrojan.TR/Spy.Qukart.NB
BaiduWin32.Trojan-Spy.Quart.a
VIPREBackdoor.Hangup.B
TrendMicroTROJ_GEN.R002C0DKU23
Trapminemalicious.high.ml.score
SophosMal/Padodor-A
IkarusTrojan.Crypt
JiangminTrojanSpy.Qukart.adpy
VaristW32/Qukart.K.gen!Eldorado
AviraTR/Spy.Qukart.NB
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
Kingsoftmalware.kb.a.1000
MicrosoftTrojanDownloader:Win32/Berbew!pz
ZoneAlarmTrojan-Spy.Win32.Qukart.af
GDataBackdoor.Hangup.B
GoogleDetected
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
VBA32BScope.Backdoor.Berbew
ALYacBackdoor.Hangup.B
MAXmalware (ai score=87)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DKU23
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.BJQV!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove TrojanDownloader:Win32/Berbew!pz?

TrojanDownloader:Win32/Berbew!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment