Trojan

What is “Trojan:Win32/PurpleWave.B!MTB”?

Malware Removal

The Trojan:Win32/PurpleWave.B!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/PurpleWave.B!MTB virus can do?

  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Steals private information from local Internet browsers

Related domains:

ikaschyn.beget.tech

How to determine Trojan:Win32/PurpleWave.B!MTB?


File Info:

crc32: CBD62CC5
md5: 9e4d3f4439ed39c01f3346fbdb7488ae
name: upload_file
sha1: 597713b0225680528e9a9154a7acca984ef67075
sha256: eddb45dfe783cb38e0597ba1a04b8fe9cdc126970dba9287f7325e05f62329ce
sha512: d7c30ce8de0d6a0dcf72a3b85a52665ad819f7052156f66eee531c0077f8002b1bba1ff7fb82aa97559ce89fca09c07a3ff0b668efbdf7ed1c5019894b1b2f23
ssdeep: 6144:RXDYbTo2DhoBuPFj04x70tJDroMMqHNS0i2om/qyHi:WHhloB4gG70jEMMiS1pSdi
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Trojan:Win32/PurpleWave.B!MTB also known as:

BkavW32.AIDetectVM.malware1
MicroWorld-eScanGen:Variant.Razy.526391
FireEyeGeneric.mg.9e4d3f4439ed39c0
CAT-QuickHealTrojan.Wacatac
McAfeeArtemis!9E4D3F4439ED
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Razy.4!c
SangforMalware
K7AntiVirusSpyware ( 0056b3121 )
BitDefenderGen:Variant.Razy.526391
K7GWSpyware ( 0056b3121 )
CrowdStrikewin/malicious_confidence_80% (W)
TrendMicroTROJ_GEN.R03BC0DH420
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
GDataGen:Variant.Razy.526391
KasperskyHEUR:Trojan-PSW.Win32.Purqos.gen
AlibabaTrojanPSW:Win32/Purqos.798012aa
NANO-AntivirusTrojan.Win32.Stealer.hpprmy
RisingSpyware.Agent!8.C6 (CLOUD)
Endgamemalicious (high confidence)
EmsisoftGen:Variant.Razy.526391 (B)
F-SecureHeuristic.HEUR/AGEN.1119893
DrWebTrojan.PWS.Stealer.26035
ZillyaTrojan.Agent.Win32.1359616
Invinceaheuristic
Trapminesuspicious.low.ml.score
SophosGeneric PUA FJ (PUA)
CyrenW32/Trojan.QIKA-4527
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1119893
Antiy-AVLTrojan[Spy]/Win32.Agent
MicrosoftTrojan:Win32/PurpleWave.B!MTB
ArcabitTrojan.Razy.D80837
ZoneAlarmHEUR:Trojan-PSW.Win32.Purqos.gen
CynetMalicious (score: 100)
BitDefenderThetaGen:NN.ZexaF.34152.pmGfaKbAWUpi
MAXmalware (ai score=84)
MalwarebytesSpyware.PurpleWave
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Spy.Agent.PZO
TrendMicro-HouseCallTROJ_GEN.R03BC0DH420
IkarusTrojan-Spy.PurpleWave
eGambitUnsafe.AI_Score_99%
FortinetW32/Agent.PZO!tr.spy
Ad-AwareGen:Variant.Razy.526391
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Generic/HEUR/QVM11.1.EAC8.Malware.Gen

How to remove Trojan:Win32/PurpleWave.B!MTB?

Trojan:Win32/PurpleWave.B!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment