Trojan

How to remove “Trojan:Win32/Meterpreter.P”?

Malware Removal

The Trojan:Win32/Meterpreter.P is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Meterpreter.P virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan:Win32/Meterpreter.P?


File Info:

crc32: 1F16F9B2
md5: 018a922a1a6f91dff6e0b9abadf7a73a
name: halo.exe
sha1: fab3377aee8c2292b54c38e5823976de5d13cac4
sha256: 239eadb54b4d8f944ae53c8260179953d21356a79cb78fabf5e48da510e44709
sha512: cffa11e0b84d90872ab23f6d92dad908213353c904dfad11db7f304822766df00b22bc424548065d4dd3879cca6135845c4cb50f2bc005c83604fb2b940f7a26
ssdeep: 24:1fUdlyEguOZrtP/n5Q4YPQgwZH0Q7NkmU0NuHF6bqVdXZUWyKjQIbPO2C7XLOe8:1UdcEKzn2kgEJhNuHs2VdaWVb0Ugb
type: MS-DOS executable, MZ for MS-DOS

Version Info:

0: [No Data]

Trojan:Win32/Meterpreter.P also known as:

BkavW32.AIDetectVM.malware2
MicroWorld-eScanDeepScan:Generic.RozenaA.E0E9064D
McAfeeVeil-FQME!018A922A1A6F
CylanceUnsafe
SangforMalware
BitDefenderDeepScan:Generic.RozenaA.E0E9064D
Cybereasonmalicious.a1a6f9
Invinceaheuristic
SymantecTrojan Horse
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
GDataDeepScan:Generic.RozenaA.E0E9064D
KasperskyHEUR:Trojan.Win32.Cometer.gen
RisingTrojan.Meterpreter!8.E532 (TFE:dGZlOgKF/PQzOX+1uw)
Endgamemalicious (high confidence)
SophosTroj/Swrort-BE
F-SecureTrojan.TR/Crypt.XPACK.Gen
McAfee-GW-EditionVeil-FQME!018A922A1A6F
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.018a922a1a6f91df
EmsisoftDeepScan:Generic.RozenaA.E0E9064D (B)
IkarusTrojan.Win32.Rozena
WebrootW32.Malware.Gen
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=84)
MicrosoftTrojan:Win32/Meterpreter.P
ArcabitDeepScan:Generic.RozenaA.E0E9064D
ZoneAlarmHEUR:Trojan.Win32.Cometer.gen
AhnLab-V3Trojan/Win32.Rozena.R254997
Acronissuspicious
VBA32BScope.Trojan.Swrort
ALYacDeepScan:Generic.RozenaA.E0E9064D
Ad-AwareDeepScan:Generic.RozenaA.E0E9064D
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Rozena.ABC
SentinelOneDFI – Malicious PE
FortinetW32/Rozena.ABC!tr
BitDefenderThetaGen:NN.ZexaF.34100.amW@auLB5Vb
AVGWin32:CrypterX-gen [Trj]
CrowdStrikewin/malicious_confidence_90% (D)
Qihoo-360HEUR/QVM20.1.08BF.Malware.Gen

How to remove Trojan:Win32/Meterpreter.P?

Trojan:Win32/Meterpreter.P removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment