Trojan

TrojanDropper.ExeBundle removal guide

Malware Removal

The TrojanDropper.ExeBundle is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDropper.ExeBundle virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine TrojanDropper.ExeBundle?


File Info:

name: E948451403EEBA9B8703.mlw
path: /opt/CAPEv2/storage/binaries/105fb081649e1a85791b062eecbbafde34a549378c0a2be86d0063d8fa5d3fe6
crc32: 8A51953D
md5: e948451403eeba9b8703abe739013d3d
sha1: c9d713a41028ab3723164ac20cda1c6c4c7edd41
sha256: 105fb081649e1a85791b062eecbbafde34a549378c0a2be86d0063d8fa5d3fe6
sha512: b470b44a610249c1e317d75ecaf0399616a95cceba5f6f9b58f4e74c7cd81122f265a4b13053e6135d720630b4e8fc5e13aae82e9255f1ad113cb6060913f46f
ssdeep: 3072:GcORFUxlnjmDXokC+GfHYToSM4ryTv8GjLo4q2jryTv8GjLoRHf9tV93Qyd:GvsZjgXo7gTt3ryT0wZjryT05HfN9x
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E5449E03F691C076CC960470097ACB766B7BFC32D67496977BC47A2E2E713819E2A316
sha3_384: 412b444c859e22f16cee4a6ddafa218e655d0b9cce57fb355b4b4758d7afe2b167b3b7a7605dbadf680912419ae03a54
ep_bytes: 000000002e7465787400000073190000
timestamp: 2002-07-24 15:15:53

Version Info:

0: [No Data]

TrojanDropper.ExeBundle also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebProgram.RemoteAdmin
FireEyeGeneric.mg.e948451403eeba9b
ALYacTrojan.GenericKDZ.80543
CylanceUnsafe
SangforSuspicious.Win32.Save.a
Cybereasonmalicious.41028a
ZonerProbably Heur.ExeHeaderP
ClamAVWin.Malware.Generic-9880088-0
KasperskyVHO:Trojan.Win32.Sdum.gen
AvastWin32:Trojan-gen
RisingMalware.Heuristic!ET#93% (RDMK:cmRtazqv+eaawIzS2+1R6wg/1/EG)
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
AviraTR/ExeBundle.22
Antiy-AVLTrojan/Generic.ASBOL.15B5
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
McAfeeGenericRXAA-FA!E948451403EE
VBA32TrojanDropper.ExeBundle
APEXMalicious
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_60% (D)

How to remove TrojanDropper.ExeBundle?

TrojanDropper.ExeBundle removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment