Trojan

Trojan:Win32/Gepys.RPK!MTB information

Malware Removal

The Trojan:Win32/Gepys.RPK!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Gepys.RPK!MTB virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Gepys.RPK!MTB?


File Info:

name: 5F29064C35334EB7C332.mlw
path: /opt/CAPEv2/storage/binaries/699316655bee506a977346e073b2713ec6609b901f7ec66de06dbfef7de32cfb
crc32: 849D0EAA
md5: 5f29064c35334eb7c332e460cca2c3b9
sha1: a4d483daa9d45fe446f19be67b98f9d3f8459326
sha256: 699316655bee506a977346e073b2713ec6609b901f7ec66de06dbfef7de32cfb
sha512: f4a1cda24056fd1f040848ec192cc038fe6414c37b823e18a54724a1030cfaa7d4ecf6b936697330d68cd0fab7360af7dbebb883c809f67d36aad3ec242a95fd
ssdeep: 6144:957fMmMUVULG/YK70K71gmBNIZ54nJHDjO9lnIPwybPu:/D/2Lm1J++bPu
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DE844B9AB391CAEAD158F7B1C4D3C6610DF97D2155F0542F1A486FBEC8282609C36F2B
sha3_384: 4510ffc203efc1c0abb3be6958ab2679098b15eddf67c8bd355b79c2d5c066df4cfad3f47c0a9ca3d229542cd02a40b5
ep_bytes: 00000000000000000000000000000000
timestamp: 2013-05-21 11:05:15

Version Info:

0: [No Data]

Trojan:Win32/Gepys.RPK!MTB also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
DrWebTrojan.Mods.146
SkyhighBehavesLike.Win32.Generic.fz
MalwarebytesCrypt.Trojan.Malicious.DDS
SangforVirus.Win32.Save.a
K7AntiVirusTrojan ( 005a9afa1 )
K7GWTrojan ( 005a9afa1 )
Cybereasonmalicious.aa9d45
SymantecML.Attribute.HighConfidence
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Gepys-9770177-0
AvastWin32:Gepys-B [Trj]
TencentTrojan.Win32.Kryptik.hck
F-SecureTrojan.TR/Crypt.XPACK.Gen7
BaiduWin32.Trojan-Dropper.Gepys.a
VIPRETrojan.GenericKDZ.95808
TrendMicroTROJ_GEN.R03BC0DAK24
SophosML/PE-A
IkarusTrojan.Win32.Krypt
AviraTR/Crypt.XPACK.Gen7
Antiy-AVLTrojan/Win32.Gepys
Kingsoftmalware.kb.a.999
MicrosoftTrojan:Win32/Gepys.RPK!MTB
GDataWin32.Trojan.PSE.1F6HVFZ
GoogleDetected
VBA32Trojan.Redirect
ALYacTrojan.GenericKDZ.95808
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BC0DAK24
RisingTrojan.Generic@AI.100 (RDML:oDB6hKoTatLKg0sILsyPJQ)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Gepys.AOUM!tr
AVGWin32:Gepys-B [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Gepys.RPK!MTB?

Trojan:Win32/Gepys.RPK!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment