Malware

How to remove “ATK/ZorPE-B”?

Malware Removal

The ATK/ZorPE-B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What ATK/ZorPE-B virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine ATK/ZorPE-B?


File Info:

name: 0E00355FB91D0C0047E6.mlw
path: /opt/CAPEv2/storage/binaries/d458b50fea146e3d5e570ba124503ba60c58233ebfb3a3214b6690ff10ff3070
crc32: B3C7A37F
md5: 0e00355fb91d0c0047e6d2b265dd7462
sha1: 08c0b5b5f35673f69dbdd8ba6d4bcfae5c1a8605
sha256: d458b50fea146e3d5e570ba124503ba60c58233ebfb3a3214b6690ff10ff3070
sha512: 00be952bced7f74087b57bb8466cf815197e656a49767ebc693d0a8aea8b4277e64c9da7b4f44315cbb0de48c5e252a5cad6570748e88cb5df27c21e7484e2a2
ssdeep: 196608:1E48JhBY1K1xR7OKM3N3I4mTvKaYxr6hJw:n8XBY8xl3M3N3Doyr6h
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T12F66331AD94644FECC0F8632ED59F11416B27C8ADAC5AEB8415736102B31FA7F8BE4E4
sha3_384: 2ebe1e9a7113e760d22e3609df30c765a02a9a05d1660dbedc8e522157aef6d073ddfdd05aa518e6784456f84ecedce7
ep_bytes: 4883ec28488b05454f6c00c700010000
timestamp: 2022-11-07 17:05:56

Version Info:

0: [No Data]

ATK/ZorPE-B also known as:

Elasticmalicious (high confidence)
Cybereasonmalicious.5f3567
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win64/Rozena.HT
APEXMalicious
KasperskyVHO:Trojan.Win64.Donut.gen
AvastWin64:TrojanX-gen [Trj]
F-SecureHeuristic.HEUR/AGEN.1247474
FireEyeGeneric.mg.0e00355fb91d0c00
SophosATK/ZorPE-B
SentinelOneStatic AI – Malicious PE
GoogleDetected
AviraHEUR/AGEN.1247474
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ZoneAlarmVHO:Trojan.Win64.Donut.gen
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C5135136
Acronissuspicious
MalwarebytesExploit.ShellCode
RisingTrojan.Rozena!8.6D (TFE:5:RCPnGjCsmBG)
IkarusTrojan.Win64.Rozena
FortinetW64/Rozena.HT!tr
AVGWin64:TrojanX-gen [Trj]

How to remove ATK/ZorPE-B?

ATK/ZorPE-B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment