Trojan

Trojan:Win32/Glupteba.NB!MTB (file analysis)

Malware Removal

The Trojan:Win32/Glupteba.NB!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Glupteba.NB!MTB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Maori
  • The binary likely contains encrypted or compressed data.

How to determine Trojan:Win32/Glupteba.NB!MTB?


File Info:

crc32: B60CB3ED
md5: 3f386d2416a1199de60fbdb1337c4c47
name: 3F386D2416A1199DE60FBDB1337C4C47.mlw
sha1: 2423526094be0f1aac21834e0615c1101c84c86e
sha256: 20f03748728e8a89402e4d92cfc59d7d53a6adad49211fac58de2095446b185f
sha512: 059781e8a9b91204a89fdd827e8991ea98fa75c2294b56d1061ff2715324b0411dc02f81bb7ac0566349d138e25702d2cd82755c1f01e4599ba58cca8aa90fec
ssdeep: 98304:VA+WWzwg3FliGxo27iPnyC83ml1L327RkAxPWqzW:9lzw7Gxo5PnyC8Ai6gF
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

FileV: 1.0.2.237
ProductVersion: 2.5.9.29
Translations: 0x0426 0x0149

Trojan:Win32/Glupteba.NB!MTB also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Siggen11.54206
MicroWorld-eScanTrojan.GenericKD.44809478
ALYacTrojan.GenericKD.44809478
CylanceUnsafe
AegisLabTrojan.Win32.Malicious.4!c
SangforMalware
CrowdStrikewin/malicious_confidence_80% (D)
BitDefenderTrojan.GenericKD.44809478
K7AntiVirusTrojan ( 005741c81 )
BitDefenderThetaGen:NN.ZexaF.34670.Zt0@aWAlsloO
CyrenW32/Kryptik.COL.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
KasperskyHEUR:Trojan.Win32.Agentb.gen
AlibabaTrojan:Win32/Kryptik.79ab99c0
Ad-AwareTrojan.GenericKD.44809478
EmsisoftTrojan.GenericKD.44809478 (B)
F-SecureTrojan.TR/AD.GoCloudnet.cij
TrendMicroTrojanSpy.Win32.ZYX.USMANL320
McAfee-GW-EditionBehavesLike.Win32.PWSBanker.wc
FireEyeGeneric.mg.3f386d2416a1199d
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.ectdd
AviraTR/AD.GoCloudnet.cij
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Glupteba.NB!MTB
GridinsoftTrojan.Win32.Packed.vb
ArcabitTrojan.Generic.D2ABBD06
ZoneAlarmHEUR:Trojan.Win32.Agentb.gen
GDataTrojan.GenericKD.44809478
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Kryptik.C4250247
Acronissuspicious
McAfeeGenericRXMV-BW!3F386D2416A1
MAXmalware (ai score=84)
MalwarebytesTrojan.MalPack
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.HHYA
TrendMicro-HouseCallTrojanSpy.Win32.ZYX.USMANL320
RisingMalware.Obscure/Heur!1.A89F (CLASSIC)
IkarusTrojan.Win32.Ranumbot
eGambitUnsafe.AI_Score_97%
FortinetW32/Malicious_Behavior.VEX
WebrootW32.Trojan.Gen
AVGFileRepMalware
Cybereasonmalicious.094be0
Paloaltogeneric.ml
Qihoo-360Generic/HEUR/QVM10.2.AC78.Malware.Gen

How to remove Trojan:Win32/Glupteba.NB!MTB?

Trojan:Win32/Glupteba.NB!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment