Trojan

Trojan:Win32/AutoProxy.GJL!MTB removal

Malware Removal

The Trojan:Win32/AutoProxy.GJL!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/AutoProxy.GJL!MTB virus can do?

  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • Authenticode signature is invalid
  • Uses suspicious command line tools or Windows utilities

How to determine Trojan:Win32/AutoProxy.GJL!MTB?


File Info:

name: 55D1CEBFDD74E3533D96.mlw
path: /opt/CAPEv2/storage/binaries/5e2b9467764dff6683092e82d6ba76bfab2a92949d44a13fe4843db421e7849e
crc32: F9C165D7
md5: 55d1cebfdd74e3533d96ca101f2c7261
sha1: ad88c01a3c2dd6a8b13ac9c1197104175ed46f39
sha256: 5e2b9467764dff6683092e82d6ba76bfab2a92949d44a13fe4843db421e7849e
sha512: 47df3328fa6788bec8a0dd3e471082a11677fbec53526ead24ce04ecf83540c5fd596c5de7d5a8bd8b6c09f84b8cff75ebf43c129bf3949fdfa3998bd6bcb528
ssdeep: 3072:SxK78290uBOBumOmJTs88T8IMWvoOUJxA7atD:SxfoOZ/hs8YvnhkD
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18AD37C2176C1C072E55711388E29D7B64A2EF8314BB5A8DBBBD40B3A4F782D1CA39357
sha3_384: 7a149e836ca879a2c773011afe4af29dfb82f90f1df7109c547fc0c00d21690e5d84d530c0fd24e5b5956d2287e1e87e
ep_bytes: e8fc430000e989feffff8bff558bec81
timestamp: 2022-05-23 09:55:57

Version Info:

0: [No Data]

Trojan:Win32/AutoProxy.GJL!MTB also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
DrWebTrojan.DnsChange.16615
MicroWorld-eScanTrojan.GenericKD.62594655
FireEyeGeneric.mg.55d1cebfdd74e353
McAfeeArtemis!55D1CEBFDD74
Cylanceunsafe
VIPRETrojan.GenericKD.62594655
K7AntiVirusTrojan ( 004bb7dd1 )
K7GWTrojan ( 004bb7dd1 )
Cybereasonmalicious.fdd74e
BitDefenderThetaAI:Packer.0CF68F161E
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent.VBR
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.AutoProxy.gen
BitDefenderTrojan.GenericKD.62594655
NANO-AntivirusTrojan.Win32.Redcap.jtfeab
AvastWin32:DropperX-gen [Drp]
TencentMalware.Win32.Gencirc.10bd8253
TACHYONTrojan/W32.AutoProxy.131065
EmsisoftTrojan.GenericKD.62594655 (B)
F-SecureTrojan.TR/Agent.bcdss
ZillyaTrojan.Agent.Win32.2791568
McAfee-GW-EditionBehavesLike.Win32.Backdoor.ch
Trapminemalicious.moderate.ml.score
SentinelOneStatic AI – Suspicious PE
GDataTrojan.GenericKD.62594655
JiangminTrojan.AutoProxy.q
AviraTR/Agent.bcdss
Antiy-AVLTrojan/Win32.Wacatac
ArcabitTrojan.Generic.D3BB1E5F
ZoneAlarmHEUR:Trojan.Win32.AutoProxy.gen
MicrosoftTrojan:Win32/AutoProxy.GJL!MTB
GoogleDetected
AhnLab-V3Dropper/Win.Dropper.C5083515
VBA32Trojan.AutoProxy
ALYacTrojan.GenericKD.62594655
MAXmalware (ai score=84)
MalwarebytesGeneric.Trojan.Malicious.DDS
PandaTrj/GdSda.A
RisingTrojan.Agent!8.B1E (TFE:5:1cEbCnridpO)
YandexTrojan.AutoProxy!Do0kYUWdBuo
IkarusTrojan.Win32.Agent
MaxSecureTrojan.Malware.116864476.susgen
AVGWin32:DropperX-gen [Drp]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/AutoProxy.GJL!MTB?

Trojan:Win32/AutoProxy.GJL!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment