Trojan

Trojan:Win32/Glupteba!pz (file analysis)

Malware Removal

The Trojan:Win32/Glupteba!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Glupteba!pz virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan:Win32/Glupteba!pz?


File Info:

name: 83913025181F4C42445B.mlw
path: /opt/CAPEv2/storage/binaries/4b3d743740cbe5e6cbd16785d9e869e915bfac8359ab58d555fa5b5b64a4423f
crc32: 4A27D9F9
md5: 83913025181f4c42445b279eb7bf7de5
sha1: 0521a29aed1e3ed4d2f5d8c8b678a72d713a76a7
sha256: 4b3d743740cbe5e6cbd16785d9e869e915bfac8359ab58d555fa5b5b64a4423f
sha512: e292ea8f0484656889d17a4887fbcf0bbcb9b1e9ae4fb967801c10798d59562d52cee0e2694f403d8dc24f8f5a5c377ddc9001866fe9d1d69a344be5d892a6a6
ssdeep: 1536:DppX7uAZx+nY3KsdxPs1xoedjwSOJS7e/EG2mBO1x:DppyAT+YzfPs1CRpEbmB8x
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T13E83D0DC3D3B244BEC360CBED4459E211D99BA8BF5BF20269D4520B8C2482DA1DCCDAD
sha3_384: 40f8e902f3a055fa3a1badcdd8dc79ec8b2773ad974a928cc5848d5c9bb08d77dd5c975a3ee67d2076cb804ef352e6c1
ep_bytes: 83ec04c70424000000005f83ec04891c
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan:Win32/Glupteba!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Copak.4!c
tehtrisGeneric.Malware
DrWebTrojan.Siggen14.51915
MicroWorld-eScanGen:Trojan.Heur.fuW@IHo3wXi
FireEyeGeneric.mg.83913025181f4c42
SkyhighBehavesLike.Win32.Glupteba.mc
McAfeeGlupteba-FTTQ!83913025181F
MalwarebytesMalware.AI.4180467379
VIPREGen:Trojan.Heur.fuW@IHo3wXi
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0058e60a1 )
BitDefenderGen:Trojan.Heur.fuW@IHo3wXi
K7GWTrojan ( 0058e60a1 )
Cybereasonmalicious.aed1e3
BitDefenderThetaAI:Packer.4C54403D1B
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.XVS
APEXMalicious
KasperskyHEUR:Trojan.Win32.Copak.vho
AlibabaTrojan:Win32/Copak.94db30e3
NANO-AntivirusVirus.Win32.Gen.ccmw
ViRobotTrojan.Win.Z.Kryptik.84480.ADH
RisingTrojan.Injector!1.CD26 (CLASSIC)
SophosTroj/Agent-BGOS
F-SecureTrojan.TR/Crypt.XPACK.Gen
ZillyaTrojan.Copak.Win32.27785
TrendMicroTROJ_GEN.R002C0DJ923
Trapminemalicious.high.ml.score
EmsisoftGen:Trojan.Heur.fuW@IHo3wXi (B)
IkarusTrojan.Win32.Crypt
JiangminTrojan.Copak.ahhl
GoogleDetected
AviraTR/Crypt.XPACK.Gen
VaristW32/Kryptik.ECM.gen!Eldorado
Antiy-AVLTrojan/Win32.Kryptik
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Glupteba!pz
ArcabitTrojan.Heur.E84C78
ZoneAlarmHEUR:Trojan.Win32.Copak.vho
GDataGen:Trojan.Heur.fuW@IHo3wXi
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R293305
VBA32BScope.Trojan.Wacatac
ALYacGen:Trojan.Heur.fuW@IHo3wXi
MAXmalware (ai score=81)
DeepInstinctMALICIOUS
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0DJ923
TencentTrojan.Win32.Copak.zd
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.ECM!tr
AVGWin32:Evo-gen [Trj]
AvastWin32:Evo-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Glupteba!pz?

Trojan:Win32/Glupteba!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment