Trojan

Trojan:Win32/Meterpreter.RPZ!MTB removal guide

Malware Removal

The Trojan:Win32/Meterpreter.RPZ!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Meterpreter.RPZ!MTB virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Trojan:Win32/Meterpreter.RPZ!MTB?


File Info:

name: F8A493C860F68F04733C.mlw
path: /opt/CAPEv2/storage/binaries/c0edae2ec74811a878f72759b89c2b9431e566ab8c6eb91496349f0c160d4646
crc32: 01707E11
md5: f8a493c860f68f04733cd27d7baec9f8
sha1: 2bdca6fa328657445633179155b9d09deaac909c
sha256: c0edae2ec74811a878f72759b89c2b9431e566ab8c6eb91496349f0c160d4646
sha512: f0d6632a1c8d28e141d39d867a67bab765b0304d03bf3c5cfc9b459ee34f75be30f18bfc872384a5a13e076c64b433c99772e7430f21ed5f84961a50d85595db
ssdeep: 384:r6ZsA/w69ZmfdvkhdIVILTcoB4wZhuKxeBYf:ct/LZOvkhdBfHzZhZYBY
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T11D92F806F6025660CC72E27B40DAC6BBDEA5B50880635D5AFF6F8B1CB22F515ED3502B
sha3_384: 1be20a68349b5d85654f4eac9ab5938a3c428f57374a67901decec5547c542d37849756cb400f0ef8d0d1fdab9eca2d2
ep_bytes: 5589e583ec18c745f4ff000000c70564
timestamp: 2024-01-17 21:58:40

Version Info:

0: [No Data]

Trojan:Win32/Meterpreter.RPZ!MTB also known as:

LionicTrojan.Win32.Meterpreter.4!c
MicroWorld-eScanTrojan.GenericKD.71261117
FireEyeTrojan.GenericKD.71261117
SkyhighRDN/Generic.dx
ALYacTrojan.GenericKD.71261117
ZillyaTrojan.Zenpak.Win32.23162
SangforTrojan.Win32.Agent.Ve9t
K7AntiVirusRiskware ( 00584baa1 )
AlibabaTrojan:Win32/Meterpreter.bf0a2c07
K7GWRiskware ( 00584baa1 )
CrowdStrikewin/malicious_confidence_90% (W)
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Khalesi.pef
BitDefenderTrojan.GenericKD.71261117
NANO-AntivirusTrojan.Win32.Zenpak.khrokl
AvastWin32:TrojanX-gen [Trj]
RisingTrojan.Meterpreter!8.E532 (TFE:5:Y91FGZw7OMP)
EmsisoftTrojan.GenericKD.71261117 (B)
F-SecureTrojan.TR/Meterpreter.qjmdf
VIPRETrojan.GenericKD.71261117
TrendMicroBackdoor.Win32.SWRORT.YXEASZ
SophosMal/Generic-S
GDataWin32.Trojan.PSE.1GHPCNM
VaristW32/Agent.IDX.gen!Eldorado
AviraTR/Meterpreter.qjmdf
Antiy-AVLTrojan/Win32.Zenpak
ArcabitTrojan.Generic.D43F5BBD
ZoneAlarmHEUR:Trojan.Win32.Khalesi.pef
MicrosoftTrojan:Win32/Meterpreter.RPZ!MTB
GoogleDetected
AhnLab-V3Trojan/Win.Meterpreter.R632092
McAfeeRDN/Generic.dx
MAXmalware (ai score=82)
VBA32BScope.Trojan.Shelm
MalwarebytesTrojan.ShellCode
PandaTrj/GdSda.A
TrendMicro-HouseCallBackdoor.Win32.SWRORT.YXEASZ
TencentMalware.Win32.Gencirc.13fe584c
IkarusTrojan.Win32.Swrort
MaxSecureTrojan.Malware.224086357.susgen
FortinetW32/PossibleThreat
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Trojan:Win32/Meterpreter.RPZ!MTB?

Trojan:Win32/Meterpreter.RPZ!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment