Trojan

What is “Trojan:Win32/Glupteba!pz”?

Malware Removal

The Trojan:Win32/Glupteba!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Glupteba!pz virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan:Win32/Glupteba!pz?


File Info:

name: 5D521164EEBD8F285B09.mlw
path: /opt/CAPEv2/storage/binaries/2def7a8bcd5e88e1503dd5f68742b70b1e822bac3f4d14683ea99ad31dfcc86b
crc32: 053E73C6
md5: 5d521164eebd8f285b09be8665bd179d
sha1: d63ec9d89fcb61452aac175b85464d3f30b05f40
sha256: 2def7a8bcd5e88e1503dd5f68742b70b1e822bac3f4d14683ea99ad31dfcc86b
sha512: 1f46b96375ec0d01983b366315527354472ee10d7fbb01c9498e14c8630e6bb2919abff0b6e36d710591b8dd82350913acf7702df2c2ccb783f78bbe5f6b8460
ssdeep: 1536:63fe5tlkjJT2450KZJQ/R+qHtdlaKaMOyoxsuQvYQw2uF78n:Uf4+/qN/aK4FWvYF2/
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T18E83BE291830C4A4F4F2A8B0CE7450C17A915946B9ACC3FFA71949FB5B42C5F54BABB4
sha3_384: 2a7b23fdabc2c66e4f9b78e314133f1f110e039a11a9dd1a646d6c71f524c3f8c653127ceb459e42d4ea47c718484658
ep_bytes: bb0000000083ec0489042481ee010000
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan:Win32/Glupteba!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Copak.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Heur.fuW@IHo3wXi
FireEyeGeneric.mg.5d521164eebd8f28
SkyhighBehavesLike.Win32.Glupteba.mc
ALYacGen:Trojan.Heur.fuW@IHo3wXi
MalwarebytesMalware.AI.4002580747
ZillyaTrojan.GenKryptik.Win32.95870
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0058e60a1 )
BitDefenderGen:Trojan.Heur.fuW@IHo3wXi
K7GWTrojan ( 0058e60a1 )
Cybereasonmalicious.89fcb6
BitDefenderThetaAI:Packer.4C54403D1B
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Kryptik.XVS
APEXMalicious
KasperskyHEUR:Trojan.Win32.Copak.vho
AlibabaTrojan:Win32/Copak.51937177
NANO-AntivirusVirus.Win32.Gen.ccmw
RisingTrojan.Injector!1.CD26 (CLASSIC)
SophosTroj/Agent-BGOS
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.Siggen13.23219
VIPREGen:Trojan.Heur.fuW@IHo3wXi
Trapminemalicious.high.ml.score
EmsisoftGen:Trojan.Heur.fuW@IHo3wXi (B)
IkarusTrojan.Win32.Crypt
JiangminTrojan.Copak.oxe
GoogleDetected
AviraTR/Crypt.XPACK.Gen
VaristW32/Kryptik.ECM.gen!Eldorado
Antiy-AVLTrojan/Win32.GenKryptik
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Glupteba!pz
ArcabitTrojan.Heur.E84C78
ZoneAlarmHEUR:Trojan.Win32.Copak.vho
GDataGen:Trojan.Heur.fuW@IHo3wXi
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R293305
McAfeeGlupteba-FTSD!5D521164EEBD
DeepInstinctMALICIOUS
VBA32BScope.Trojan.Wacatac
Cylanceunsafe
PandaTrj/CI.A
TencentTrojan.Win32.Copak.zd
YandexTrojan.Copak!qm2sediW9RY
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.115533306.susgen
FortinetW32/Kryptik.ECM!tr
AVGWin32:Evo-gen [Trj]
AvastWin32:Evo-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Glupteba!pz?

Trojan:Win32/Glupteba!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment