Trojan

Trojan:Win32/Sabsik.EN.B!ml information

Malware Removal

The Trojan:Win32/Sabsik.EN.B!ml is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Sabsik.EN.B!ml virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Binary compilation timestomping detected

How to determine Trojan:Win32/Sabsik.EN.B!ml?


File Info:

name: 4B8E6B7D9116898AC768.mlw
path: /opt/CAPEv2/storage/binaries/40a4e36a1ac8dc142b97f0bb862f68c43041f133718c6002781b2d7f5e4abf4a
crc32: AB67DDD6
md5: 4b8e6b7d9116898ac76886441b00eb1b
sha1: a0ba4905784cf6652bc2951d02d5434154fdc743
sha256: 40a4e36a1ac8dc142b97f0bb862f68c43041f133718c6002781b2d7f5e4abf4a
sha512: b8fe15effcd15a1f412ccef7c32ead6422e7d1956c87ab69fa91a469ccf6f78b9266a457c9e2e36015a7983323edf839b81773d0530dc59799e315817fc10c79
ssdeep: 98304:x1rRokjhv7StsTJdXN0B7+sitLK3BDhtvS0Hpe4zbpaAKQkroGIEUbYZfgs0Qlxd:eSvUvBnvjeApaAvktlU64sN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T138C69D4277F440F5E1B6D230C9668376E6B2BC695D31D70F1690D61E2F337A28E2A326
sha3_384: b0e9eb96de21c0e34d9f6e1db3722573ea7b791fabac1ed84ed5d048a2a9df47dbb87c497580a048d1954f2274123f48
ep_bytes: 0fc1ca21e8e8000000005a0fbfcaeb01
timestamp: 2033-07-16 10:41:46

Version Info:

0: [No Data]

Trojan:Win32/Sabsik.EN.B!ml also known as:

tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Application.Application.Razy.449184
ALYacGen:Variant.Application.Application.Razy.449184
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusRiskware ( 0055e3f21 )
K7GWRiskware ( 0055e3f21 )
Cybereasonmalicious.d91168
BitDefenderThetaGen:NN.ZexaF.34606.@hZ@aiRFpml
CyrenW32/Agent.EF.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32Win32/RiskWare.PEMalform.F
TrendMicro-HouseCallTROJ_GEN.R03BC0PDM22
BitDefenderGen:Variant.Application.Application.Razy.449184
NANO-AntivirusTrojan.Win32.Crypted.cxsujh
AvastWin32:Malware-gen
Ad-AwareGen:Variant.Application.Application.Razy.449184
EmsisoftGen:Variant.Application.Application.Razy.449184 (B)
ZillyaTool.PEMalform.Win32.171
TrendMicroTROJ_GEN.R03BC0PDM22
McAfee-GW-EditionBehavesLike.Win32.Backdoor.wh
FireEyeGeneric.mg.4b8e6b7d9116898a
SophosML/PE-A
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Application.Application.Razy.449184
AviraTR/ATRAPS.Gen2
MAXmalware (ai score=74)
Antiy-AVLTrojan/Generic.ASMalwS.847221
ArcabitTrojan.Application.Application.Razy.D6DAA0
MicrosoftTrojan:Win32/Sabsik.EN.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.LdPinch.R28809
Acronissuspicious
McAfeeGenericRXFR-AR!4B8E6B7D9116
MalwarebytesMalware.AI.4216924674
APEXMalicious
RisingHacktool.PEMalform!8.13289 (RDMK:cmRtazrqsOA8L04+6v/u3sEzJddm)
YandexRiskWare.PEMalform!zwe7ER+Lj1c
IkarusTrojan.Win32.Genome
MaxSecureTrojan.Malware.121218.susgen
FortinetRiskware/PEMalform
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Sabsik.EN.B!ml?

Trojan:Win32/Sabsik.EN.B!ml removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment