Trojan

TrojanDownloader:Win32/Berbew!pz information

Malware Removal

The TrojanDownloader:Win32/Berbew!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Berbew!pz virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine TrojanDownloader:Win32/Berbew!pz?


File Info:

name: EBC14BFA99283E51BF3D.mlw
path: /opt/CAPEv2/storage/binaries/6d7a9a111f5735cbd7485f3f1f90cbb366ce29ec4d853807263ca8d0fa5fc9e7
crc32: 4C511915
md5: ebc14bfa99283e51bf3df88aa67632e2
sha1: 10678ae36c7da7c64e65bbb1e572cf3c34e67f64
sha256: 6d7a9a111f5735cbd7485f3f1f90cbb366ce29ec4d853807263ca8d0fa5fc9e7
sha512: e7f1038b7d65cabf355471ff0aacd3e95f4d22853152e03a266509533913dcac8a15d58bbc99e10749a2cd145fe04bc4d23134af64f43ff3527ebc431d3ad9f1
ssdeep: 6144:rNB71b4TlFAQT72g2UmKyIxLDXXoq9FJZCUmKyIxLX:rZb4hFA+Q32XXf9Do3+
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T160647C06E1FCAE43CA85CAF795E11EF2699202D987E4A39E7B0C8CBC6D469313C75D50
sha3_384: f5d6db7a8f209c49ba27a43aab129ef3c2dae3b29d988f063a4cf8d776b0eac433f53c864e141fec2aac20abee2005f6
ep_bytes: 90909090906090b800104000906a0490
timestamp: 1987-08-01 05:39:38

Version Info:

0: [No Data]

TrojanDownloader:Win32/Berbew!pz also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.ShellObject.t8Z@ae0D4Vj
CAT-QuickHealTrojan.GenericIH.S13286062
SkyhighBehavesLike.Win32.Generic.fc
McAfeeTrojan-FVOJ!EBC14BFA9928
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.Padodor.Win32.776019
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.ShellObject.E66A9A
BitDefenderThetaAI:Packer.A23B208121
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32Win32/Padodor.AB
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Crypted-31
KasperskyBackdoor.Win32.Padodor.gen
BitDefenderGen:Trojan.ShellObject.t8Z@ae0D4Vj
NANO-AntivirusTrojan.Win32.Padodor.kcdksq
AvastWin32:Padodor-V [Trj]
TencentBackdoor.Win32.Padodor.kp
EmsisoftGen:Trojan.ShellObject.t8Z@ae0D4Vj (B)
F-SecureTrojan.TR/Crypt.XDR.Gen
DrWebBackDoor.Wdozer
VIPREGen:Trojan.ShellObject.t8Z@ae0D4Vj
SophosMal/Padodor-A
IkarusTrojan.Crypt
JiangminBackdoor.Padodor.dwog
VaristW32/Backdoor.DKIC-2994
AviraTR/Crypt.XDR.Gen
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
Kingsoftmalware.kb.a.1000
MicrosoftTrojanDownloader:Win32/Berbew!pz
ZoneAlarmBackdoor.Win32.Padodor.gen
GDataGen:Trojan.ShellObject.t8Z@ae0D4Vj
GoogleDetected
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
VBA32Backdoor.Padodor
TACHYONBackdoor/W32.Padodor
Cylanceunsafe
PandaTrj/Genetic.gen
RisingBackdoor.Padodor!8.118 (TFE:1:X6rxYYcFM4D)
YandexBackdoor.Padodor!A5nRMmhQe3Q
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Qukart.A!tr
AVGWin32:Padodor-V [Trj]
Cybereasonmalicious.36c7da
DeepInstinctMALICIOUS

How to remove TrojanDownloader:Win32/Berbew!pz?

TrojanDownloader:Win32/Berbew!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment