Trojan

Trojan:Win64/Gulpix.RPX!MTB information

Malware Removal

The Trojan:Win64/Gulpix.RPX!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win64/Gulpix.RPX!MTB virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Trojan:Win64/Gulpix.RPX!MTB?


File Info:

name: 84E8E67D3B87E4E460C2.mlw
path: /opt/CAPEv2/storage/binaries/0f4e8aa0ab00139031be13f4b20db61033be24c473510beae661a4bd4dfa6290
crc32: 027F1E7D
md5: 84e8e67d3b87e4e460c25570d101d149
sha1: 0f1c98c529f7372e2070041798703bf2fc834800
sha256: 0f4e8aa0ab00139031be13f4b20db61033be24c473510beae661a4bd4dfa6290
sha512: f3d16e79f9c72eb4b06319b0a3d8c18bab944faa1536a7de42f8c744e4b5f26ba7eaf065736f852b4489f994e73a13536ac3fe1d646b6aced511da562fe69e00
ssdeep: 24576:CzszXsCjGJXrC8uF6cl7zTBWOkx2LFjXOkx2LF:CzcXTjGUoszTBYQhXQ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T123258D19F6A44076C0A7C57EC4A29AAAFBF1741227208BCF539147561F337E2BD3A319
sha3_384: d67931c8df4ca9090b6d5538423b1b2a72c1568232dc10f062d3ecd38093c6a87ff1cfa4bd31e3ba949a2a46b5ffe9ba
ep_bytes: 540e000090b90c000000e82571000048
timestamp: 2023-08-24 02:40:08

Version Info:

0: [No Data]

Trojan:Win64/Gulpix.RPX!MTB also known as:

BkavW32.AIDetectMalware
ClamAVWin.Malware.Barys-10002593-0
FireEyeGeneric.mg.84e8e67d3b87e4e4
SkyhighBehavesLike.Win32.Generic.tm
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 004bcce41 )
K7GWTrojan ( 004bcce41 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZexaF.36608.anZ@aqcQHyh
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
APEXMalicious
CynetMalicious (score: 100)
AvastWin32:BackdoorX-gen [Trj]
F-SecureTrojan.TR/Crypt.ULPM.Gen
Trapminesuspicious.low.ml.score
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
GoogleDetected
AviraTR/Crypt.ULPM.Gen
Kingsoftmalware.kb.b.947
MicrosoftTrojan:Win64/Gulpix.RPX!MTB
GDataWin32.Trojan.Agent.K0IIBK
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BH01A124
RisingTrojan.Sfuzuan!1.F142 (CLASSIC)
IkarusTrojan.Win64.Gulpix
FortinetW32/PossibleThreat
AVGWin32:BackdoorX-gen [Trj]
Cybereasonmalicious.529f73
DeepInstinctMALICIOUS

How to remove Trojan:Win64/Gulpix.RPX!MTB?

Trojan:Win64/Gulpix.RPX!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment