Trojan

Trojan:Win32/Guloader.AL!MTB removal tips

Malware Removal

The Trojan:Win32/Guloader.AL!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Guloader.AL!MTB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan:Win32/Guloader.AL!MTB?


File Info:

crc32: F27E1310
md5: f46cdabaeaee99beb6f1469c7a637c46
name: F46CDABAEAEE99BEB6F1469C7A637C46.mlw
sha1: a295b37a189b51685871674e60fee4d5a92ef833
sha256: 24c6fcb3f26697d826a4c1899bdb9a7368ae336046c1028a6e53a9f17a5186af
sha512: 8d0f79e617e4ddf953278560bc51eab6c545998497981256c70fa823ba4871202e918f8c2d30ddf89d6cb6148cdc365fe03c64e68715a18d396f7640f507a7ea
ssdeep: 3072:eo3BepJlZa/xxtuSqNfe8iZ1RYFMCzi7dabpNAs+ZVdKuQWfVKHJlZapGBR:7iU0S2fe8iZrOCdabpqxDP4HP
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: Socialbakers
InternalName: amerikanise
FileVersion: 1.00
CompanyName: Socialbakers
LegalTrademarks: Socialbakers
ProductName: Nonuserssym5
ProductVersion: 1.00
OriginalFilename: amerikanise.exe

Trojan:Win32/Guloader.AL!MTB also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
CylanceUnsafe
SangforRiskware.Win32.Agent.ky
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaTrojan:Win32/GenKryptik.92e9bbcb
CyrenW32/VBKrypt.AXG.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/GenKryptik.FHVM
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan.Win32.Mucc.pgo
BitDefenderTrojan.GenericKD.46672306
MicroWorld-eScanTrojan.GenericKD.46672306
Ad-AwareTrojan.GenericKD.46672306
SophosMal/Generic-S
McAfee-GW-EditionGuLoader-FCXC!F46CDABAEAEE
FireEyeGeneric.mg.f46cdabaeaee99be
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Guloader.AL!MTB
ZoneAlarmTrojan.Win32.Mucc.pgo
GDataTrojan.GenericKD.46672306
McAfeeGuLoader-FCXC!F46CDABAEAEE
MAXmalware (ai score=82)
PandaTrj/RnkBend.A
TrendMicro-HouseCallTROJ_GEN.R06CH06GN21
IkarusWin32.SuspectCrc
FortinetW32/GenKryptik.FHVM!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/Heur.Generic.HwMAueAA

How to remove Trojan:Win32/Guloader.AL!MTB?

Trojan:Win32/Guloader.AL!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment