Trojan

Should I remove “Trojan:Win32/Glupteba!pz”?

Malware Removal

The Trojan:Win32/Glupteba!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Glupteba!pz virus can do?

  • Sample contains Overlay data
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan:Win32/Glupteba!pz?


File Info:

name: AC92FA9D877A7B246DB9.mlw
path: /opt/CAPEv2/storage/binaries/1bb568e8d027ff7de72d845af7484601eaa54f0cbc542a027ca58566d9eb237c
crc32: 5D2F7CDE
md5: ac92fa9d877a7b246db96223ee8fb305
sha1: 413b454be59a2a8f0ba9b72361420467111a7921
sha256: 1bb568e8d027ff7de72d845af7484601eaa54f0cbc542a027ca58566d9eb237c
sha512: bdb108aef4435b828808ebd97dbeb7fa3ceb630f7c1b15145525fb175da94d2ead82d5b32717645398c0b1d7b3154fcabd9295136f9233c9faf33d5886f2785e
ssdeep: 3072:dEAhkm1GOwmeYRzhvmWSWfKlGn5AF4KhkZKWWBaArwYc0goRk:BkhOwoVNOGn5dwB9rtgKk
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T158B3B06A72433366D58D327A363B54C2AB3F47A16F7989509829600CC37FD6A537F2C8
sha3_384: 05cec385946b33b60c4d6cec44424a75549db6752f7be49ec8a5f761e694bd87dcde43ddcc489cae8f66cd70f53d4cec
ep_bytes: 6800000000585181efcf81969d5b4e81
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan:Win32/Glupteba!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Copak.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Heur.huY@IHo3wXi
FireEyeGeneric.mg.ac92fa9d877a7b24
SkyhighBehavesLike.Win32.Glupteba.cc
ALYacGen:Trojan.Heur.huY@IHo3wXi
Cylanceunsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0058e60a1 )
AlibabaTrojan:Win32/Glupteba.24ef656b
K7GWTrojan ( 0058e60a1 )
Cybereasonmalicious.be59a2
BitDefenderThetaAI:Packer.D6E0B0A91B
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Kryptik.XVS
APEXMalicious
ClamAVWin.Packed.Lazy-10005437-0
KasperskyHEUR:Trojan.Win32.Copak.vho
BitDefenderGen:Trojan.Heur.huY@IHo3wXi
NANO-AntivirusVirus.Win32.Gen.ccmw
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.Copak.zd
SophosTroj/Agent-BGOS
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.Siggen24.21756
VIPREGen:Trojan.Heur.huY@IHo3wXi
TrendMicroTROJ_GEN.R002C0DA324
Trapminemalicious.high.ml.score
EmsisoftGen:Trojan.Heur.huY@IHo3wXi (B)
IkarusTrojan.Win32.Crypt
GDataWin32.Trojan.PSE.77OHNJ
VaristW32/Kryptik.ECM.gen!Eldorado
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Win32.Kryptik
Kingsoftmalware.kb.a.998
ArcabitTrojan.Heur.EBB4C9
ZoneAlarmHEUR:Trojan.Win32.Copak.vho
MicrosoftTrojan:Win32/Glupteba!pz
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R293305
McAfeeGlupteba-FTSD!AC92FA9D877A
MAXmalware (ai score=84)
VBA32BScope.Trojan.Wacatac
MalwarebytesMalware.AI.4240531463
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0DA324
RisingTrojan.Injector!1.CD26 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.ECM!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Glupteba!pz?

Trojan:Win32/Glupteba!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment