Trojan

Should I remove “Trojan:Win32/Glupteba!pz”?

Malware Removal

The Trojan:Win32/Glupteba!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Glupteba!pz virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk

How to determine Trojan:Win32/Glupteba!pz?


File Info:

name: F32E54935939E637B02E.mlw
path: /opt/CAPEv2/storage/binaries/4b2dbf473f181a67f7021c883c54d812e31875f04aa4f698c2f1d32dedb99b92
crc32: 0C6563AB
md5: f32e54935939e637b02ecfcfe9e1767e
sha1: 322f1daf255326b189d4a5fd08163a7f0df518c4
sha256: 4b2dbf473f181a67f7021c883c54d812e31875f04aa4f698c2f1d32dedb99b92
sha512: c7e453744e746d17a24bae8608a2dcd997a9f6ddce5df6f38cfe0f8be2c93ea112a3f17aae0bef08468f465b06e664f4b799b84b6e4898493e48dba1aca4a416
ssdeep: 1536:KEH7dikr+9gP6vQtO9BTvd7XYjqWZ2SwDQU11Ev+KgLlPQT4IvlLSaZdjsa:KGN62SiO9BT17XYjOxv0+bBPQFlRZRx
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1F89302AF497948CBD1426A3528861A9AC7E8F08F31AB0B5FDFA3C9265140B41F43DDF5
sha3_384: f178d63796c3a9e19c9ca54c77b4115afb4914fc2e5481d4aeb386bb9dcc1eb7d39b3d4710def8228b5c82e13d08dfec
ep_bytes: b900000000574289d08b1c2483c40483
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan:Win32/Glupteba!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Copak.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.870640
FireEyeGeneric.mg.f32e54935939e637
SkyhighBehavesLike.Win32.Glupteba.nc
McAfeeGlupteba-FUBP!F32E54935939
MalwarebytesMalware.AI.2218662730
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005304e81 )
AlibabaTrojan:Win32/Copak.81c73b93
K7GWTrojan ( 005304e81 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.Razy.DD48F0
BitDefenderThetaGen:NN.ZexaF.36792.fuY@aejYyMk
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.XVS
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Razy-9880751-0
KasperskyTrojan.Win32.Copak.agboq
BitDefenderGen:Variant.Razy.870640
NANO-AntivirusVirus.Win32.Gen.ccmw
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.Copak.pa
SophosTroj/Agent-BGOS
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.Siggen21.45342
VIPREGen:Variant.Razy.870640
TrendMicroTROJ_GEN.R002C0DJI23
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Razy.870640 (B)
IkarusTrojan.Win32.Vindor
JiangminTrojan.Copak.abvi
VaristW32/Kryptik.ECM.gen!Eldorado
AviraTR/Dropper.Gen
Antiy-AVLGrayWare/Win32.Uwamson
Kingsoftmalware.kb.a.994
MicrosoftTrojan:Win32/Glupteba!pz
ZoneAlarmTrojan.Win32.Copak.agboq
GDataGen:Variant.Razy.870640
GoogleDetected
AhnLab-V3Trojan/Win.Generic.R432958
ALYacGen:Variant.Razy.870640
MAXmalware (ai score=84)
VBA32BScope.Trojan.Wacatac
Cylanceunsafe
PandaTrj/Chgt.AC
TrendMicro-HouseCallTROJ_GEN.R002C0DJI23
RisingTrojan.Kryptik!1.D12D (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.ECM!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.f25532
DeepInstinctMALICIOUS

How to remove Trojan:Win32/Glupteba!pz?

Trojan:Win32/Glupteba!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment