Trojan

About “Trojan:Win32/Phorpiex.RC!MTB” infection

Malware Removal

The Trojan:Win32/Phorpiex.RC!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Phorpiex.RC!MTB virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Trojan:Win32/Phorpiex.RC!MTB?


File Info:

name: EB7A719E113429185832.mlw
path: /opt/CAPEv2/storage/binaries/742ea9f6e421c1e09c800d4f8f4c5fef98240be1de1de0292f23c6acca669933
crc32: D9CFD386
md5: eb7a719e11342918583255cc5691bb79
sha1: eab49501090aa5f399da2932f2da04ee0e69b293
sha256: 742ea9f6e421c1e09c800d4f8f4c5fef98240be1de1de0292f23c6acca669933
sha512: 7607d2ccf4faf2317495c3490f4f6dc13be1de642c551850c810a0ef5235092ada0fe523d9128f4e7bc5994d756e57a5a7d167f3081eb04038d239023f845d02
ssdeep: 1536:HayEVHZTNasZ0UwYlLRvYo6TkN2qCk98yuRnHh3VrmB2zfJEzTDf8n:SNYIRvYbTk/C88PHh35mGJ0S
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B1A33A00F902C37EE4B641FA86F70AAD69389FA4134854C752C47DEE6B688DFB93511B
sha3_384: ecf5e5b3728b77e11d79f1f5bf1649fed87279e05fbefabda017ebd66fc66ad356b85c0f08836f0d3aaa2a8e63cd0e2f
ep_bytes: 558bec51e897170000ff15dc41db0050
timestamp: 2013-11-11 05:52:42

Version Info:

0: [No Data]

Trojan:Win32/Phorpiex.RC!MTB also known as:

BkavW32.AIDetect.malware2
MicroWorld-eScanTrojan.GenericKDZ.88751
FireEyeGeneric.mg.eb7a719e11342918
ALYacTrojan.GenericKDZ.88751
CylanceUnsafe
ZillyaTrojan.Agent.Win32.2816008
K7AntiVirusTrojan ( 000c73e11 )
K7GWTrojan ( 000c73e11 )
Cybereasonmalicious.1090aa
CyrenW32/Agent.EQM.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Agent.PTD
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:Trojan.Win32.Agent.gen
BitDefenderTrojan.GenericKDZ.88751
NANO-AntivirusTrojan.Win32.Hvnc.jpnaoe
AvastWin32:MalwareX-gen [Trj]
Ad-AwareTrojan.GenericKDZ.88751
SophosMal/Generic-S
F-SecureHeuristic.HEUR/AGEN.1250886
VIPRETrojan.GenericKDZ.88751
McAfee-GW-EditionBehavesLike.Win32.Backdoor.nh
EmsisoftTrojan.GenericKDZ.88751 (B)
GDataTrojan.GenericKDZ.88751
AviraHEUR/AGEN.1250886
Antiy-AVLTrojan/Win32.Wacatac
ArcabitTrojan.Generic.D15AAF
ZoneAlarmUDS:Trojan.Win32.Agent.gen
MicrosoftTrojan:Win32/Phorpiex.RC!MTB
GoogleDetected
AhnLab-V3Trojan/Win.Generic.C5169754
Acronissuspicious
McAfeeGenericRXTJ-GS!EB7A719E1134
MAXmalware (ai score=82)
VBA32BScope.Trojan.Inject
MalwarebytesMalware.AI.1165698015
RisingTrojan.Agent!8.B1E (TFE:5:M3kvgKR4Vc)
IkarusTrojan-Ransom.Blocker
FortinetW32/Agent.PTD!tr
BitDefenderThetaGen:NN.ZexaF.34754.fqW@aOegm!c
AVGWin32:MalwareX-gen [Trj]
PandaTrj/GdSda.A

How to remove Trojan:Win32/Phorpiex.RC!MTB?

Trojan:Win32/Phorpiex.RC!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment