What Is Sepulcher Trojan
Sepulcher Trojan is a recently discovered computer malware that is spread in active attack campaigns. The targets are high-profile in the detected activity, which means that the hacking group behind it must be experienced in planning viruses. Read our in-depth analysis of the samples and learn how to remove active infections in this article.
Sepulcher Trojan Summary
|Short Description||Aims to steal data from your computer and run different malware actions.|
|Symptoms||Your computer may behave strangely and new files may be dropped in several Windows Directories.|
|Distribution Method||Common infection methods including phishing messages and malware-infected files.|
|Detection Tool|| See If Your System Has Been Affected by malware |
Malware Removal Tool
|User Experience||Join Our Forum to Discuss Sepulcher Trojan.|
Sepulcher Trojan – Virus Infection Methods
The Sepulcher Trojan is a dangerous newly detected remote access Trojan (RAT) which is being used by Chinese hackers against European organizations. According to the available information the main distribution method relies on the espionage tactics. Two separate attack campaigns have been detected as part of the virus activity. The first instances were found to have started in March, the targets were economic, diplomatic, and legislative agencies located in European countries. The virus was contained in email messages that have been disguised as COVID-19 related data. The email messages in this campaign contain an attached file called Covdi.rtf that when launched will lead to the Trojan deployment.
The second wave was detected in July and this time it was directed against groups associated with Tibet. The emails are disguised as originating from a group called “Women’s Association Tibetan”. Once again they include a malicious document, in this case a PowerPoint presentation. When it is opened the malicious Trojan installation code will be started.
Sepulcher Trojan – Virus Capabilities
The Sepulcher Trojan will launch the usual modules associated with this category of threats. This includes the popular information gathering function which will search for sensitive users or system data on the compromised machines. The stolen data can be used to create unique identifiers of the machine and victims, financial abuse, and identity-related crimes. The captured samples reveal that the engine includes the following: available host drives, directory statistics, directory paths, directory content, running processes, and services.
The main remote control functionality will be used in order to take over control of the machines. This is done by setting up a persistent connection to a hacker-controlled server. Through this connection, the criminals will be able to spy on the users, take over control of their systems, and steal any present files.
The conducted analysis of the Trojan shows that the main engine is also capable of disabling running processes. This includes both important system services and also security programs that may be installed: anti-virus programs, firewalls, anti-intrusion systems, and others.
Given the fact that this is rated as one of the most advanced threats of this category and is actively spreading through dangerous phishing tactics, we recommend that active infections are removed as quickly as possible. Follow the instructions in this article to attempt computer recovery.
Sepulcher Trojan – Virus Removal GUIDE
In order to fully remove this infection from your computer system, recommendations are to try the automatic removal guidelines below. They are particularly created in order to assist you separate this malware first of all and after that remove it’s destructive files. If you lack the experience in malware removal, the best method and most reliable one according to safety professionals is to use an innovative anti-malware software program. Such will not just immediately get rid of the Sepulcher infection from your computer system, yet will certainly additionally ensure that your computer system remains shielded versus future infections.
- Guide 1: How to Remove Sepulcher Trojan from Windows.
- Guide 2: Get rid of Sepulcher Trojan from Mac OS X.
- Guide 3: Remove Sepulcher Trojan from Google Chrome.
- Guide 4: Erase Sepulcher Trojan from Mozilla Firefox.
- Guide 5: Uninstall Sepulcher Trojan from Microsoft Edge.
- Guide 6: Remove Sepulcher Trojan from Safari.
- Guide 7: Eliminate Sepulcher Trojan from Internet Explorer.
How to Remove Sepulcher Trojan from Windows.
Step 1: Boot Your PC In Safe Mode to isolate and remove Sepulcher Trojan
Step 2: Uninstall Sepulcher Trojan and related software from Windows
Step 3: Clean any registries, created by Sepulcher Trojan on your computer.
The usually targeted registries of Windows machines are the following:
You can access them by opening the Windows registry editor and deleting any values, created by Sepulcher Trojan there. This can happen by following the steps underneath:
Get rid of Sepulcher Trojan from Mac OS X.
Step 1: Uninstall Sepulcher Trojan and remove related files and objects
1. Hit the ⇧+⌘+U keys to open Utilities. Another way is to click on “Go” and then click “Utilities”, like the image below shows:
- Go to Finder.
- In the search bar type the name of the app that you want to remove.
- If all of the files are related, hold the ⌘+A buttons to select them and then drive them to “Trash”.
In case you cannot remove Sepulcher Trojan via Step 1 above:
You can repeat the same procedure with the following other Library directories:
Tip: ~ is there on purpose, because it leads to more LaunchAgents.
Step 2: Scan for and remove malware from your Mac
When you are facing problems on your Mac as a result of unwanted scripts, programs and malware, the recommended way of eliminating the threat is by using an anti-malware program. Combo Cleaner offers advanced security features along with other modules that will improve your Mac’s security and protect it in the future.
Remove Sepulcher Trojan from Google Chrome.
Step 1: Start Google Chrome and open the drop menu
Step 2: Move the cursor over "Tools" and then from the extended menu choose "Extensions"
Step 3: From the opened "Extensions" menu locate the unwanted extension and click on its "Remove" button.
Step 4: After the extension is removed, restart Google Chrome by closing it from the red "X" button at the top right corner and start it again.
Erase Sepulcher Trojan from Mozilla Firefox.
Step 1: Start Mozilla Firefox. Open the menu window
Step 2: Select the "Add-ons" icon from the menu.
Step 3: Select the unwanted extension and click "Remove"
Step 4: After the extension is removed, restart Mozilla Firefox by closing it from the red "X" button at the top right corner and start it again.
Uninstall Sepulcher Trojan from Microsoft Edge.
Step 1: Start Edge browser.
Step 2: Open the drop menu by clicking on the icon at the top right corner.
Step 3: From the drop menu select "Extensions".
Step 4: Choose the suspected malicious extension you want to remove and then click on the gear icon.
Step 5: Remove the malicious extension by scrolling down and then clicking on Uninstall.
Remove Sepulcher Trojan from Safari.
Step 1: Start the Safari app.
Step 2: After hovering your mouse cursor to the top of the screen, click on the Safari text to open its drop down menu.
Step 3: From the menu, click on "Preferences".
Step 4: After that, select the 'Extensions' Tab.
Step 5: Click once on the extension you want to remove.
Step 6: Click 'Uninstall'.
A pop-up window will appear asking for confirmation to uninstall the extension. Select 'Uninstall' again, and the Sepulcher Trojan will be removed.
Eliminate Sepulcher Trojan from Internet Explorer.
Step 1: Start Internet Explorer.
Step 2: Click on the gear icon labeled 'Tools' to open the drop menu and select 'Manage Add-ons'
Step 3: In the 'Manage Add-ons' window.
Step 4: Select the extension you want to remove and then click 'Disable'. A pop-up window will appear to inform you that you are about to disable the selected extension, and some more add-ons might be disabled as well. Leave all the boxes checked, and click 'Disable'.
Step 5: After the unwanted extension has been removed, restart Internet Explorer by closing it from the red 'X' button located at the top right corner and start it again.