Trojan

Trojan:Win32/Glupteba!MSR information

Malware Removal

The Trojan:Win32/Glupteba!MSR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Glupteba!MSR virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan:Win32/Glupteba!MSR?


File Info:

crc32: E8EDC609
md5: 0b422df6c3d71d2147350d11c256724e
name: wupxarch11.exe
sha1: 03e3c570e4a32992a2633bbff9c49793b6c1b0c3
sha256: 7f16b5e291ccba6411c95bafc3fe7eeb5c4a57df8ba32cfd173e75cc8826c921
sha512: 6c2d940a03a1a261c6b7562e259d61af27fd57cb5f8e9860584ee7197a03f7e19c739548eb8901763b4f0ccf6c69fd66097c835aaf98f3eaa4f4889b81db28d0
ssdeep: 49152:s9elE4UVPjJ6a4h85i0NDDRCdLDCjtcLROlri/:ojV7saA85i0NDDRCdEtlli/
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

0: [No Data]

Trojan:Win32/Glupteba!MSR also known as:

BkavW32.AIDetectVM.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.44059956
CAT-QuickHealTrojan.Wacatac
McAfeeGenericRXAA-AA!0B422DF6C3D7
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 005621491 )
BitDefenderTrojan.GenericKD.44059956
K7GWTrojan ( 005621491 )
TrendMicroTrojan.Win32.WACATAC.USMANJD20
CyrenW32/Trojan.JDKH-1862
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan.Win32.Agentb.kanv
AlibabaTrojan:Win32/Agentb.bcbbf4e6
NANO-AntivirusTrojan.Win32.Ot.hzonkz
ViRobotTrojan.Win32.Z.Ranumbot.1984000
AegisLabTrojan.Win32.Agentb.4!c
Ad-AwareTrojan.GenericKD.44059956
EmsisoftTrojan.GenericKD.44059956 (B)
ComodoMalware@#1ukmkv15uacx2
F-SecureTrojan.TR/SpyBot.xxwrs
DrWebTrojan.SpyBot.958
ZillyaTrojan.RanumBot.Win32.368
InvinceaMal/Generic-S
McAfee-GW-EditionBehavesLike.Win32.Morefi.tc
FireEyeGeneric.mg.0b422df6c3d71d21
SophosMal/Generic-S
IkarusTrojan.Win32.Ranumbot
MaxSecureTrojan.Malware.108579721.susgen
AviraTR/SpyBot.xxwrs
MAXmalware (ai score=80)
Antiy-AVLTrojan/Win32.RanumBot
MicrosoftTrojan:Win32/Glupteba!MSR
ArcabitTrojan.Generic.D2A04D34
ZoneAlarmTrojan.Win32.Agentb.kanv
GDataTrojan.GenericKD.44059956
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Fixflo.C4206612
ALYacTrojan.Agent.Ranumbot
VBA32TrojanSpyBot
PandaTrj/RnkBend.A
ESET-NOD32a variant of Win32/RanumBot.X
TrendMicro-HouseCallTrojan.Win32.WACATAC.USMANJD20
TencentWin32.Trojan.Agentb.Fru
FortinetW32/RanumBot.X!tr
WebrootW32.Malware.Gen
AVGWin32:Trojan-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Generic/Trojan.Spy.1e5

How to remove Trojan:Win32/Glupteba!MSR?

Trojan:Win32/Glupteba!MSR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment