Trojan

Trojan:Win32/Guloader.GM!MTB removal

Malware Removal

The Trojan:Win32/Guloader.GM!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Guloader.GM!MTB virus can do?

  • Executable code extraction
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan:Win32/Guloader.GM!MTB?


File Info:

crc32: F96FC3E5
md5: 2f8108e944514b8cc689d7084283288d
name: uzmod3.exe
sha1: 1536d0a76d42cfe8079dd85660b278b6585e3214
sha256: 11a78acf68304ec4d98011715ce784705bcbeb62bfb97efa9e0a4a1424d3162e
sha512: 9da2742acf7555058359211ce73a8c27ef8d8fc60315077273ac842850015690c562a69d56f831ab7defabf75aba5691e5a2da254f583e65ed3485c1f0e178a6
ssdeep: 768:QpSSvFwtD4zb9gWMh957cxCXVQMJr9umXpI6:75B4zbiWMh7cxMxumX26
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: jordin
InternalName: gobel
FileVersion: 1.00
CompanyName: Scotters
LegalTrademarks: Stimulat
Comments: Scotters
ProductName: Vizorsi8
ProductVersion: 1.00
FileDescription: Pagine
OriginalFilename: gobel.exe

Trojan:Win32/Guloader.GM!MTB also known as:

DrWebTrojan.Siggen9.33924
MicroWorld-eScanTrojan.GenericKD.33618946
McAfeeFareit-FRS!2F8108E94451
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Generic.4!c
K7AntiVirusTrojan ( 005640021 )
BitDefenderTrojan.GenericKD.33618946
K7GWTrojan ( 005640021 )
BitDefenderThetaGen:NN.ZevbaF.34106.gm0@aS6Skmki
F-ProtW32/VBKrypt.AHC.gen!Eldorado
APEXMalicious
ClamAVWin.Packed.Noon-7650558-0
GDataTrojan.GenericKD.33618946
AlibabaTrojan:Win32/Injector.cd12f4cc
RisingTrojan.Injector!8.C4 (CLOUD)
Ad-AwareTrojan.GenericKD.33618946
EmsisoftTrojan.GenericKD.33618946 (B)
McAfee-GW-EditionBehavesLike.Win32.Trojan.cz
SophosMal/FareitVB-W
IkarusTrojan.VB.Crypt
CyrenW32/VBKrypt.AHC.gen!Eldorado
MAXmalware (ai score=86)
ArcabitTrojan.Generic.D200FC02
MicrosoftTrojan:Win32/Guloader.GM!MTB
AhnLab-V3Trojan/Win32.VBKrypt.R329099
Acronissuspicious
VBA32BScope.Trojan.Wacatac
ALYacTrojan.GenericKD.33618946
MalwarebytesTrojan.GuLoader.VB
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Injector.ELJJ
FortinetW32/GenKryptik.EWHQ!tr
AVGFileRepMalware
CrowdStrikewin/malicious_confidence_80% (W)
Qihoo-360Generic/HEUR/QVM03.0.615F.Malware.Gen

How to remove Trojan:Win32/Guloader.GM!MTB?

Trojan:Win32/Guloader.GM!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment