Crack

HackTool:Win32/CobaltStrike!pz removal

Malware Removal

The HackTool:Win32/CobaltStrike!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:Win32/CobaltStrike!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine HackTool:Win32/CobaltStrike!pz?


File Info:

name: 29A98A31E8FAA6CC5F75.mlw
path: /opt/CAPEv2/storage/binaries/f739b2721f8c0c7a91f47eed4e89dae19c0e9188be5d34abcf3c9107cf2130fd
crc32: F3E0A8AC
md5: 29a98a31e8faa6cc5f7554d2f4947059
sha1: 9b04bb9877e86fa49641b3d6f549bac63bd369f4
sha256: f739b2721f8c0c7a91f47eed4e89dae19c0e9188be5d34abcf3c9107cf2130fd
sha512: ea6a3a3a1e2a1ec6fc2734d2367171c0d91ab64122409610359e5751b31a4edb5be55ca38856316286f3505e13c47b62ff7e2e966889f714c87bb19a1ee42132
ssdeep: 24576:vBF6727ZvhwJWe9pYJh5MHHRDQxgSm0NoUm:royBcILNoUm
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A3350150CEAB15F5D21B2170056F9B2FA6222B090F38DDDBC3D41E8AD75AFF52032969
sha3_384: f625805a5844073808b3032eee06e61d5ea920162f4266c40ad3ea163ceb62e73db6888a1b2ba1b93676429676a5a114
ep_bytes: 6f47624a4748656f7666764543435650
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

HackTool:Win32/CobaltStrike!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (moderate confidence)
ClamAVWin.Trojan.Coinminer-7332689-0
FireEyeGeneric.mg.29a98a31e8faa6cc
SkyhighBehavesLike.Win32.Generic.th
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaHackTool:Win32/CobaltStrike.167ff910
SymantecPacked.Generic.551
APEXMalicious
CynetMalicious (score: 100)
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
RisingHackTool.CobaltStrike!8.1216E (TFE:3:rrmzPDyxX0H)
SophosTroj/Miner-ABH
DrWebTrojan.PWS.Banker1.30278
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.Agent.LD3NT7
GoogleDetected
Antiy-AVLTrojan/Win32.AGeneric
Kingsoftmalware.kb.a.968
XcitiumTrojWare.Win32.TrojanDownloader.Banload.RES@8hfp75
MicrosoftHackTool:Win32/CobaltStrike!pz
VaristW32/S-8f4e9221!Eldorado
AhnLab-V3Trojan/Win32.Banload.C3470781
Acronissuspicious
McAfeeGenericRXNR-AT!29A98A31E8FA
VBA32TrojanPSW.Banker
MalwarebytesGeneric.Malware.AI.DDS
IkarusTrojan.Win64.CoinMiner
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.7267!tr
DeepInstinctMALICIOUS

How to remove HackTool:Win32/CobaltStrike!pz?

HackTool:Win32/CobaltStrike!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment