Trojan

Trojan:Win32/TrickBotCrypt.GIF!MTB information

Malware Removal

The Trojan:Win32/TrickBotCrypt.GIF!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/TrickBotCrypt.GIF!MTB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan:Win32/TrickBotCrypt.GIF!MTB?


File Info:

crc32: 27268EC8
md5: b7e359f7786b76b7657659e7a6f12a5f
name: B7E359F7786B76B7657659E7A6F12A5F.mlw
sha1: 097cc2d70de1779e76b76e32e4fd043cf31498b2
sha256: f3e8b74205d3dfa40b7c618fe5f7d2031adb6722fad14c6a58517d0bf87c7a01
sha512: e5190c774ea8c1122c46ae307651ed2310ddc7e3570deeb35aca5919883cf0f88e5912acf641aaf072e7027ccd5eeed77ca625f41d774c6d072abcedc075a3db
ssdeep: 6144:ges7FB/0v3sKYsdvWPmv7pydfo/LZmurlV6S9+fcuM1a:gF7IFd+PmTsdf6ZHV6Scfcuca
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/TrickBotCrypt.GIF!MTB also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.35909615
FireEyeGeneric.mg.b7e359f7786b76b7
McAfeeEmotet-FSE!B7E359F7786B
AegisLabTrojan.Win32.Trickpak.4!c
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.35909615
K7GWRiskware ( 0040eff71 )
BitDefenderThetaGen:NN.ZedlaF.34700.vu4@aGy2@Fdi
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTrojanSpy.Win32.TRICKBOT.TIGOCIT
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Trickpak.gen
AlibabaTrojan:Win32/TrickBotCrypt.fc091ad6
Ad-AwareTrojan.GenericKD.35909615
EmsisoftTrojan.GenericKD.35909615 (B)
ComodoMalware@#3c22boga9ueto
F-SecureTrojan.TR/AD.Emotet.akyan
DrWebTrojan.Trick.46772
TrendMicroTrojanSpy.Win32.TRICKBOT.TIGOCIT
McAfee-GW-EditionEmotet-FSE!B7E359F7786B
SophosMal/Generic-S
IkarusTrojan.Win32.TrickBotCrypt
WebrootW32.Trojan.Gen
AviraTR/AD.Emotet.akyan
MAXmalware (ai score=89)
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/TrickBotCrypt.GIF!MTB
GridinsoftMalware.Win32.Gen.oa
ArcabitTrojan.Generic.D223EFEF
ZoneAlarmHEUR:Trojan.Win32.Trickpak.gen
GDataTrojan.GenericKD.35909615
CynetMalicious (score: 85)
ALYacTrojan.Trickster.Gen
MalwarebytesTrojan.TrickBot
PandaTrj/GdSda.A
APEXMalicious
FortinetW32/Trickpak.TIGOCIT!tr
AVGWin32:Malware-gen
AvastWin32:Malware-gen
Qihoo-360Win32/Trojan.9e1

How to remove Trojan:Win32/TrickBotCrypt.GIF!MTB?

Trojan:Win32/TrickBotCrypt.GIF!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment