Trojan

About “Trojan:Win32/Phorpiex.BF!MTB” infection

Malware Removal

The Trojan:Win32/Phorpiex.BF!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Phorpiex.BF!MTB virus can do?

  • Authenticode signature is invalid

How to determine Trojan:Win32/Phorpiex.BF!MTB?


File Info:

name: B9D3F7D1F8951F25AC88.mlw
path: /opt/CAPEv2/storage/binaries/8d32831d355c5e22550fc01801e66cb9bc30e7f9839a7f81a67ca9c0d2965e97
crc32: DFACBC0F
md5: b9d3f7d1f8951f25ac888cad75f1322c
sha1: 5fde7369c205ad195617367e4560421b4ae75906
sha256: 8d32831d355c5e22550fc01801e66cb9bc30e7f9839a7f81a67ca9c0d2965e97
sha512: ed26a2603e538ce1575cb67e124ba727392b8fcba64b943301553e0a76c9856e3186040b26b2a6a27e1856a2d24f1c8d1940ecf02c325c4e49c56671c3604db7
ssdeep: 192:AWwVkfzngjoWL10inas6h/LTEAluW0iMC/KUSO5dzw8AHGIIUUuiCvJxTmv8U9cJ:AybmKiJ0LTEAUq5dTA7pav8U9c+
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B4823C0FB8464217E8A04071E6AE877ADD7CA47A33C414D7F7D1945A2A28AD2FC3715F
sha3_384: 7d141e0f82a11631e17438d8c24309129fc77c52d91f53a1e6c79965f366a107e452c2073bd99a718f2e04849e91853a
ep_bytes: e87c030000e936fdffff8bff558bec8b
timestamp: 2023-08-17 12:40:57

Version Info:

0: [No Data]

Trojan:Win32/Phorpiex.BF!MTB also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Phorpiex.4!c
DrWebTrojan.DownLoader46.744
MicroWorld-eScanGen:Heur.Mint.Zard.39
FireEyeGeneric.mg.b9d3f7d1f8951f25
McAfeeArtemis!B9D3F7D1F895
MalwarebytesSpyware.Phorpiex
SangforDropper.Win32.Phorpiex.V03k
AlibabaTrojanDropper:Win32/Phorpiex.442ebe68
K7GWTrojan ( 005aa1f41 )
K7AntiVirusTrojan ( 005aa1f41 )
BitDefenderThetaGen:NN.ZexaF.36350.buW@aej3iPfi
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Phorpiex_AGen.U
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Dropper.Win32.Phorpiex.gen
BitDefenderGen:Heur.Mint.Zard.39
AvastWin32:BotX-gen [Trj]
TencentMalware.Win32.Gencirc.10bf1614
SophosMal/Generic-S
F-SecureTrojan.TR/AD.Phorpiex.dneeo
VIPREGen:Heur.Mint.Zard.39
McAfee-GW-EditionBehavesLike.Win32.Generic.lh
EmsisoftGen:Heur.Mint.Zard.39 (B)
SentinelOneStatic AI – Suspicious PE
GDataGen:Heur.Mint.Zard.39
AviraTR/AD.Phorpiex.dneeo
XcitiumTrojWare.Win32.Injector.UOL@4q80ri
ArcabitTrojan.Mint.Zard.39
ZoneAlarmHEUR:Trojan-Dropper.Win32.Phorpiex.gen
MicrosoftTrojan:Win32/Phorpiex.BF!MTB
AhnLab-V3Trojan/Win.Phorpiex.C5471678
VBA32BScope.TrojanDropper.Phorpiex
ALYacGen:Heur.Mint.Zard.39
MAXmalware (ai score=81)
Cylanceunsafe
PandaTrj/GdSda.A
RisingWorm.Phorpiex!8.48D (TFE:5:IzOidLQVDjU)
IkarusWorm.Win32.Phorpiex
FortinetW32/Phorpiex.W!tr
AVGWin32:BotX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Trojan:Win32/Phorpiex.BF!MTB?

Trojan:Win32/Phorpiex.BF!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment