Trojan

What is “Trojan:Win32/TrickBot.ARJ!MTB”?

Malware Removal

The Trojan:Win32/TrickBot.ARJ!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/TrickBot.ARJ!MTB virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

How to determine Trojan:Win32/TrickBot.ARJ!MTB?


File Info:

crc32: A31F092A
md5: 2edc04c6afae515f6806074baf818043
name: lookup.hlp
sha1: 34de678af68338084b88749b5afbe07d7e3c1026
sha256: b4921036575c053f51f7df9a0df95b76bbb69ab2d85b52f312d358983ef14a36
sha512: c2a361d27a91a702b2afb337f2176b382e565bcb584558cb19790c0984efe6c8b1cffacbc56bb2ce89d3088d64cead9d465d58bdb9acbfb3369c730595c425c8
ssdeep: 12288:JPgdt9CINa8NTbh/2kp165CAVCEnDHx8B5vHbT:JP49CINa8NTbdCCcRWfbT
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2008 Hans Dietrich
FileVersion: 1, 0, 0, 1
ProductName: XIconTest Application
E-mail: hdietrich@gmail.com
ProductVersion: 1, 0, 0, 1
FileDescription: XIconTest MFC Application
Article: www.codeproject.com
OriginalFilename: XIconTest.exe
Translation: 0x0409 0x04b0

Trojan:Win32/TrickBot.ARJ!MTB also known as:

MicroWorld-eScanGen:Variant.Midie.69458
McAfeeArtemis!2EDC04C6AFAE
CylanceUnsafe
BitDefenderGen:Variant.Midie.69458
K7GWTrojan ( 0055e3cb1 )
CyrenW32/Trickbot.CE.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GZXS
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan-Banker.Win32.Trickster.hvo
AlibabaTrojanBanker:Win32/Trickster.0c6edb8c
Ad-AwareGen:Variant.Midie.69458
EmsisoftGen:Variant.Midie.69458 (B)
ComodoMalware@#2m6abeh7y3o3y
F-SecureTrojan.TR/Crypt.Agent.upfub
DrWebTrojan.Inject3.32386
McAfee-GW-EditionBehavesLike.Win32.BadFile.hh
Trapminemalicious.moderate.ml.score
FireEyeGen:Variant.Midie.69458
SophosMal/Generic-S
IkarusTrojan.Win32.Crypt
F-ProtW32/Trickbot.CE.gen!Eldorado
WebrootW32.Trojan.Emotet
AviraTR/Crypt.Agent.upfub
Endgamemalicious (high confidence)
ArcabitTrojan.Midie.D10F52
ZoneAlarmTrojan-Banker.Win32.Trickster.hvo
MicrosoftTrojan:Win32/TrickBot.ARJ!MTB
AhnLab-V3Malware/Win32.Generic.C3862695
ALYacGen:Variant.Midie.69458
MAXmalware (ai score=81)
VBA32BScope.TrojanBanker.Trickster
MalwarebytesTrojan.TrickBot
PandaTrj/Genetic.gen
GDataGen:Variant.Midie.69458
AVGWin32:MalwareX-gen [Trj]
AvastWin32:MalwareX-gen [Trj]
Qihoo-360Win32/Trojan.8a2

How to remove Trojan:Win32/TrickBot.ARJ!MTB?

Trojan:Win32/TrickBot.ARJ!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment