Crack

HackTool:Win32/CobaltStrike!pz information

Malware Removal

The HackTool:Win32/CobaltStrike!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:Win32/CobaltStrike!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine HackTool:Win32/CobaltStrike!pz?


File Info:

name: 7B63D347E78687E0C6AF.mlw
path: /opt/CAPEv2/storage/binaries/d1ebe652788e93d5382d29157cc4355ea7659668bacf37812c1e9fc79020bb83
crc32: 95DBF265
md5: 7b63d347e78687e0c6afe3f21b676537
sha1: a33da6e148d036969d14d79fe2b6ec058e5c593a
sha256: d1ebe652788e93d5382d29157cc4355ea7659668bacf37812c1e9fc79020bb83
sha512: 87bd65a4e2e86ffdf054efa3d37cf21986afe68f3bf5b3e725751708eb9ca0c5bfdbb50f10ed88d3af216535c9d0bb569b310019d76a0755e4238470e1d83883
ssdeep: 24576:vBWelxqsfNMNr79DsIZcGf3ggHFlyyJ4kmCahuGUDRNr+eAZaexQ:8F/Y2jSzUYZaH
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1814523028D6E4C7BCB5D1278143F0B8F73956E40932469D7FACA6D96C15EAAB14332BC
sha3_384: b6058e80482f182a0ccb2349a321b97eb45b39c4c89f5cedfb7512b9b3c6e21de5d1f548e8d6556ba814093c108624d1
ep_bytes: 7a59766e70706c5661645848556b7258
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

HackTool:Win32/CobaltStrike!pz also known as:

BkavW32.AIDetectMalware
ClamAVWin.Trojan.Banload-9853585-0
FireEyeGeneric.mg.7b63d347e78687e0
SkyhighBehavesLike.Win32.Generic.tm
McAfeeArtemis!7B63D347E786
SangforSuspicious.Win32.Save.a
AlibabaHackTool:Win32/CobaltStrike.b1658a22
SymantecPacked.Generic.551
Elasticmalicious (moderate confidence)
CynetMalicious (score: 100)
NANO-AntivirusTrojan.Win32.Miner.jeccbt
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
DrWebTrojan.PWS.Banker1.30278
SophosTroj/Miner-ABM
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.Agent.7WAS25
VaristW32/S-8f4e9221!Eldorado
Antiy-AVLTrojan/Win32.AGeneric
XcitiumTrojWare.Win32.TrojanDownloader.Banload.RES@8hfp75
MicrosoftHackTool:Win32/CobaltStrike!pz
GoogleDetected
AhnLab-V3Trojan/Win32.Banload.C3470781
Acronissuspicious
VBA32TrojanPSW.Banker
MalwarebytesGeneric.Malware.AI.DDS
RisingTrojan.Vindor!8.10CC (RDMK:cmRtazp8s+EWeEFAjF6tX6atT+Az)
IkarusTrojan.Win64.CoinMiner
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Banload.BD2A!tr
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove HackTool:Win32/CobaltStrike!pz?

HackTool:Win32/CobaltStrike!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Crack

HackTool:Win32/CobaltStrike!pz removal instruction

Malware Removal

The HackTool:Win32/CobaltStrike!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:Win32/CobaltStrike!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine HackTool:Win32/CobaltStrike!pz?


File Info:

name: 007F674E5AEDED2CA9C8.mlw
path: /opt/CAPEv2/storage/binaries/19fa068443689fb42cc41407f2e45e660f2c3afdd34a1ad18ff001c31b2422b1
crc32: EAFCD402
md5: 007f674e5aeded2ca9c8dc58a330161d
sha1: 8254c33d01ed0e8a3fc4e0480b11a67f0ca81a77
sha256: 19fa068443689fb42cc41407f2e45e660f2c3afdd34a1ad18ff001c31b2422b1
sha512: 7f5492cf83028553a497f65b0dc44763b54407b1a3640a8d327b7ac507668a1c9115a786e38b7ed2048981c778194b8dd58c50faa007b9c9b13e784b461a9556
ssdeep: 12288:wqBF6oVTk26GXLNaGUnFsnEV+43Ykj7MwunhT/gO0FMuWlF:vBF6727XL1+Ki+4inB/X+5WlF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T151E4F1A0DEAF54F5D60B6130546FA62F5A2126091F38EDDBC3C00D8AD76BFF21132969
sha3_384: f02e6ce27b80480bfc738f6f7814e0809a1d480e380ab285b5846a990c10083debd997af641ab7feefe993f2bf9dd8f0
ep_bytes: 4c6e45584e67696350694c70724b6465
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

HackTool:Win32/CobaltStrike!pz also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
ClamAVWin.Trojan.Razy-7332610-0
FireEyeGeneric.mg.007f674e5aeded2c
SkyhighBehavesLike.Win32.Generic.jh
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaHackTool:Win32/CobaltStrike.640ad672
SymantecPacked.Generic.551
APEXMalicious
CynetMalicious (score: 100)
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
DrWebTrojan.PWS.Banker1.30278
SophosTroj/Miner-ABH
SentinelOneStatic AI – Malicious PE
GDataWin32.Application.Agent.NZYSH4
GoogleDetected
Antiy-AVLTrojan/Win32.AGeneric
Kingsoftmalware.kb.a.965
XcitiumTrojWare.Win32.TrojanDownloader.Banload.RES@8hfp75
MicrosoftHackTool:Win32/CobaltStrike!pz
VaristW32/S-8f4e9221!Eldorado
AhnLab-V3Trojan/Win32.Banload.C3470781
Acronissuspicious
McAfeeGenericRXNR-AT!007F674E5AED
VBA32TrojanPSW.Banker
MalwarebytesGeneric.Malware.AI.DDS
RisingTrojan.Generic@AI.100 (RDML:EBcr9pTyPfhrncOvoiPFwA)
IkarusTrojan.Win64.CoinMiner
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.7267!tr
DeepInstinctMALICIOUS

How to remove HackTool:Win32/CobaltStrike!pz?

HackTool:Win32/CobaltStrike!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment