Trojan

Should I remove “Trojan:Win32/Predator.EFG!MTB”?

Malware Removal

The Trojan:Win32/Predator.EFG!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Predator.EFG!MTB virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • Authenticode signature is invalid

How to determine Trojan:Win32/Predator.EFG!MTB?


File Info:

name: 2D072D9730D04FE07B02.mlw
path: /opt/CAPEv2/storage/binaries/b504779a461b908fa21d4353471167841bcc3970481f29a96ee31600e17da9f6
crc32: 995608B7
md5: 2d072d9730d04fe07b02409ca8052515
sha1: e9d3a79bc9c2849bac92bb813868a28a01226672
sha256: b504779a461b908fa21d4353471167841bcc3970481f29a96ee31600e17da9f6
sha512: 9d99184970be94e11312cc08a5aebdf8b0ffccccfa188950ec1b4052d54082f6161c676a6a7a6e8ad81faa88567b8a4abdb16d89d9e779a4e868ceec960398f3
ssdeep: 6144:xyCLqrHh2n2A/Wy51N/eVO7rCZ85gYdsiirWXbO:xHLGk2A/B1NWVkCZ4gYb/bO
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T15F745C00FA91C038F4FB01F566B696AA9D3D797057BC85CB93C1599E0A34AE1EE30B17
sha3_384: f17139979ea8198f3d419da7000b39598b054068b629ba558933b3dacb758f030fd565e887b690735c3dcb8f76ba98b7
ep_bytes: 558bec837d0c017505e8d20501008b45
timestamp: 2019-10-17 01:41:36

Version Info:

0: [No Data]

Trojan:Win32/Predator.EFG!MTB also known as:

LionicTrojan.Win32.Korplug.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Fragtor.124307
FireEyeGeneric.mg.2d072d9730d04fe0
SkyhighGenericRXTT-VY!2D072D9730D0
McAfeeGenericRXTT-VY!2D072D9730D0
MalwarebytesMalware.AI.1511442114
ZillyaTrojan.Generic.Win32.1031495
SangforTrojan.Win32.Predator.Vyc1
K7AntiVirusTrojan ( 005666dc1 )
AlibabaTrojan:Win32/Predator.0375c09c
K7GWTrojan ( 005666dc1 )
BitDefenderThetaGen:NN.ZedlaF.36804.vu6@amaXjLni
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Agent.ABXE
TrendMicro-HouseCallTROJ_GEN.R002C0DD524
AvastWin32:Malware-gen
ClamAVWin.Malware.Agent-7785027-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Fragtor.124307
NANO-AntivirusTrojan.Win32.Korplug.irzrsv
TencentMalware.Win32.Gencirc.10bea422
EmsisoftGen:Variant.Fragtor.124307 (B)
F-SecureTrojan.TR/AD.Korplug.zwtql
DrWebTrojan.Siggen18.44853
VIPREGen:Variant.Fragtor.124307
TrendMicroTROJ_GEN.R002C0DD524
SophosMal/Generic-S
Paloaltogeneric.ml
MAXmalware (ai score=100)
JiangminTrojan.Script.avgx
GoogleDetected
AviraTR/AD.Korplug.zwtql
VaristW32/ABRisk.KTHJ-2480
Antiy-AVLTrojan/Win32.AGeneric
MicrosoftTrojan:Win32/Predator.EFG!MTB
ArcabitTrojan.Fragtor.D1E593
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Fragtor.124307
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C4108046
VBA32Adware.Presenoker
ALYacGen:Variant.Fragtor.124307
Cylanceunsafe
PandaTrj/GdSda.A
RisingTrojan.AgentTesla!8.104D5 (TFE:6:jjwacq8CYMM)
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/PossibleThreat
AVGWin32:Malware-gen
DeepInstinctMALICIOUS
alibabacloudTrojan.Win.UnkAgent

How to remove Trojan:Win32/Predator.EFG!MTB?

Trojan:Win32/Predator.EFG!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment