Trojan

About “Trojan:Win32/Glupteba.PO!MTB” infection

Malware Removal

The Trojan:Win32/Glupteba.PO!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Glupteba.PO!MTB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Tamil
  • Detects Sandboxie through the presence of a library
  • Detects Avast Antivirus through the presence of a library

How to determine Trojan:Win32/Glupteba.PO!MTB?


File Info:

crc32: 81B08EE1
md5: c78d424eba64076d3af57b29b7602d25
name: C78D424EBA64076D3AF57B29B7602D25.mlw
sha1: c0a75b1e6c61f81f57d810b2cf74599038b51350
sha256: 5d82b4f16469d125e3615431b1ccdbbf2decc388e1e3b417d2c0e12e0cca78f6
sha512: 281fe544504c2f90c7938c2fd21c4ddfd95046f287e36cc5070a0504bd926ac04b728490317ddca93ebef705499efacda3c79b1e9873215a177238aeda2f2bdc
ssdeep: 3072:YVy08lmgtNct3lW75e3gojOi8EJiIaa2BJ1sShUWhZL5kh2H8Prpoyhnt:CoLtk3s7UJjn8caa2BJhyWqp1n
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

FileVerus: 1.0.52.18
ProductVersys: 1.6.27.29
Translations: 0x0166 0x0122

Trojan:Win32/Glupteba.PO!MTB also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0057b2231 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader38.35890
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.46137099
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanPSW:Win32/Kryptik.e2198914
K7GWTrojan ( 0057b2231 )
Cybereasonmalicious.e6c61f
CyrenW32/Kryptik.DWF.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HKMB
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
KasperskyHEUR:Trojan-PSW.Win32.Racealer.gen
BitDefenderTrojan.GenericKD.46137099
MicroWorld-eScanTrojan.GenericKD.46137099
Ad-AwareTrojan.GenericKD.46137099
SophosMal/Generic-S + Troj/Agent-BGSO
ComodoMalware@#11s1d9j7xyrt
BitDefenderThetaGen:NN.ZexaF.34678.pqW@aG8h4uaG
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Trojan.dh
FireEyeGeneric.mg.c78d424eba64076d
EmsisoftTrojan.GenericKD.46137099 (B)
SentinelOneStatic AI – Suspicious PE
JiangminBackdoor.Androm.bagp
WebrootW32.Malware.Gen
AviraTR/AD.Nekark.dfarv
eGambitUnsafe.AI_Score_92%
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftTrojan:Win32/Glupteba.PO!MTB
AegisLabTrojan.Win32.Androm.m!c
GDataTrojan.GenericKD.46137099
AhnLab-V3Trojan/Win.Generic.C4430144
McAfeeRDN/Generic.grp
MAXmalware (ai score=82)
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002H07DK21
RisingMalware.Obscure/Heur!1.9E03 (CLOUD)
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetPossibleThreat.PALLAS.H
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml

How to remove Trojan:Win32/Glupteba.PO!MTB?

Trojan:Win32/Glupteba.PO!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment