Trojan

TrojanDownloader:Win32/Berbew!pz information

Malware Removal

The TrojanDownloader:Win32/Berbew!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Berbew!pz virus can do?

  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine TrojanDownloader:Win32/Berbew!pz?


File Info:

name: 64E555EA037B8CE63BFB.mlw
path: /opt/CAPEv2/storage/binaries/08a652dac72ad6a3180f13aeb32019eabcb99a2de391768d64de5db4e0ac3bc0
crc32: 88893434
md5: 64e555ea037b8ce63bfb7b1b39e68e94
sha1: 12f09a2a0baae8bf9907c76cc7b8bb7e08351e33
sha256: 08a652dac72ad6a3180f13aeb32019eabcb99a2de391768d64de5db4e0ac3bc0
sha512: 67aee0544751d24076cf9e7181e34c4c42b9ec4f03d9b34bf4cc3f94c40ccaed99c9ddfc30ea23e279194fa2f86e91eb340fa11cb01b37bdc60fd3f971820679
ssdeep: 768:IB4H7bF1VqyFuKqbk4AqDTltw6TaNmImmYjQ8w/bgLq3Z/1H58Zl5nf1fZMEBFEI:IaHt1gybqw4AiTfTXImmYnikNCyVso
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D5435D8FF3554FE6C7A302B611AD969E2B251CAC13E854563581B22E3249B7C3DFA1F0
sha3_384: 50eec53940f5f021d3cf1123c3ccf736d52847403ecf146fc9587586b7d25260e4bd92b7a10ab3c8180d9d5121b82d30
ep_bytes: 909060b80010400090bbf87e40009090
timestamp: 2023-07-29 18:29:59

Version Info:

0: [No Data]

TrojanDownloader:Win32/Berbew!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Qukart.l!c
Elasticmalicious (high confidence)
MicroWorld-eScanBackdoor.Hangup.B
CAT-QuickHealTrojanSpy.Qukart
SkyhighBehavesLike.Win32.Generic.qh
McAfeeTrojan-FVOJ!64E555EA037B
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanSpy:Win32/Qukart.f3b99170
K7GWTrojan ( 005780dd1 )
K7AntiVirusTrojan ( 005780dd1 )
BitDefenderThetaAI:Packer.806D3CE11D
VirITWorm.Win32.Berbew.G
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Spy.Qukart
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Renos-10003934-0
KasperskyTrojan-Spy.Win32.Qukart.af
BitDefenderBackdoor.Hangup.B
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Spy.Win32.Qukart.hc
TACHYONBackdoor/W32.Padodor
EmsisoftBackdoor.Hangup.B (B)
BaiduWin32.Trojan-Spy.Quart.a
F-SecureTrojan.TR/Spy.Qukart.NB
DrWebBackDoor.HangUp.43832
VIPREBackdoor.Hangup.B
TrendMicroTROJ_GEN.R002C0DA724
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
JiangminTrojanSpy.Qukart.ajbr
VaristW32/Qukart.K.gen!Eldorado
AviraTR/Spy.Qukart.NB
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
Kingsoftmalware.kb.a.1000
MicrosoftTrojanDownloader:Win32/Berbew!pz
ArcabitBackdoor.Hangup.B
ZoneAlarmTrojan-Spy.Win32.Qukart.af
GDataBackdoor.Hangup.B
GoogleDetected
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
VBA32BScope.Backdoor.Berbew
MAXmalware (ai score=89)
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DA724
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.FBNK!tr
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.a0baae
DeepInstinctMALICIOUS

How to remove TrojanDownloader:Win32/Berbew!pz?

TrojanDownloader:Win32/Berbew!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment