Trojan

Trojan:Win32/Meterpreter.RPZ!MTB information

Malware Removal

The Trojan:Win32/Meterpreter.RPZ!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Meterpreter.RPZ!MTB virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Trojan:Win32/Meterpreter.RPZ!MTB?


File Info:

name: 2A6372707BFB5214531E.mlw
path: /opt/CAPEv2/storage/binaries/dbfab23eaa5e77d0ec90b56705f339276f5844d79dbc30025732ebc973e34b76
crc32: 0D9CC1C2
md5: 2a6372707bfb5214531ebfca150d7069
sha1: 5ba6fc2d07765ebf7cc723b2c398d0da06ade182
sha256: dbfab23eaa5e77d0ec90b56705f339276f5844d79dbc30025732ebc973e34b76
sha512: 976f57e5f847f559cd297895e5f5fe7e19d9f78e7ecc5d1cf1e3fcdc2696ad4006e0bfe53c5d30c28c6f7a04624f3d8122a94b73128cde0915966fbd39d48a1e
ssdeep: 192:GHNAiBSIwYQtctqyxbXPlwYDOPCsZtILqrx0SUYYlYKCmYT+Rt1O0ueJKjTYo:GHqiUn68yxbJ6PNvNN0SrYY5yue6Yo
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T13BA2DA1AF7028575C833A27241DBCB3BF731B24541521D5FBE6B1A2CB23EA116D3A16B
sha3_384: aa4ad46c6d34471c06efed3759acfa82acff1de0719c628c1be9db8d982acd02e5f86ebcc8be6bcac38a296e79e23e01
ep_bytes: 5589e583ec18c745f4ff000000c70564
timestamp: 2024-01-17 22:20:38

Version Info:

0: [No Data]

Trojan:Win32/Meterpreter.RPZ!MTB also known as:

BkavW32.Common.F5622A89
LionicTrojan.Win32.Meterpreter.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanDeepScan:Generic.ShellCode.Marte.3.8B5749D0
FireEyeDeepScan:Generic.ShellCode.Marte.3.8B5749D0
SkyhighArtemis!Trojan
McAfeeArtemis!2A6372707BFB
Cylanceunsafe
SangforTrojan.Win32.Meterpreter.Vmen
K7AntiVirusRiskware ( 00584baa1 )
AlibabaTrojan:Win32/Meterpreter.e755f3e2
K7GWRiskware ( 00584baa1 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecMeterpreter
ESET-NOD32a variant of Generik.KGXGWQG
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Khalesi.pef
BitDefenderDeepScan:Generic.ShellCode.Marte.3.8B5749D0
NANO-AntivirusTrojan.Win32.Khalesi.kinrsk
AvastWin32:TrojanX-gen [Trj]
TencentMalware.Win32.Gencirc.13fe5685
SophosMal/Generic-S
F-SecureTrojan.TR/Meterpreter.pdixa
VIPREDeepScan:Generic.ShellCode.Marte.3.8B5749D0
TrendMicroBackdoor.Win32.SWRORT.YXEAUZ
EmsisoftDeepScan:Generic.ShellCode.Marte.3.8B5749D0 (B)
IkarusTrojan.Win32.Swrort
GDataWin32.Trojan.PSE.1GHPCNM
GoogleDetected
AviraTR/Meterpreter.pdixa
MAXmalware (ai score=81)
Antiy-AVLTrojan/Win32.Meterpreter
ArcabitDeepScan:Generic.ShellCode.Marte.3.8B5749D0
ZoneAlarmHEUR:Trojan.Win32.Khalesi.pef
MicrosoftTrojan:Win32/Meterpreter.RPZ!MTB
VaristW32/ABRisk.ECCT-8933
AhnLab-V3Trojan/Win.Meterpreter.R631914
ALYacDeepScan:Generic.ShellCode.Marte.3.8B5749D0
MalwarebytesTrojan.ShellCode
PandaTrj/GdSda.A
TrendMicro-HouseCallBackdoor.Win32.SWRORT.YXEAUZ
RisingTrojan.Meterpreter!8.E532 (CLOUD)
MaxSecureTrojan.Malware.224086357.susgen
FortinetW32/PossibleThreat
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Trojan:Win32/Meterpreter.RPZ!MTB?

Trojan:Win32/Meterpreter.RPZ!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment