Crack

HackTool:Win32/CobaltStrike!pz removal guide

Malware Removal

The HackTool:Win32/CobaltStrike!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:Win32/CobaltStrike!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine HackTool:Win32/CobaltStrike!pz?


File Info:

name: 58711850424C885ACF10.mlw
path: /opt/CAPEv2/storage/binaries/e6ba5475bfbb2119860307183b053f88657eb28c4c105b983a04d3f912bea3f5
crc32: 7DCFB470
md5: 58711850424c885acf10e8381369188c
sha1: 5c0e341d78a16c987f02561f3497f221f4c87ff4
sha256: e6ba5475bfbb2119860307183b053f88657eb28c4c105b983a04d3f912bea3f5
sha512: 7f875a22144bcb57d7f561eba0507d9e9f1221fe63599ac56ad3cdfca3630a9bbcf197fe170b823f0d2b1d78a7f4b2dbeabc8e031344ba3edf9c3fb18b8d64b7
ssdeep: 24576:vBF6727f8UhNnXIhz24GtdepbuqDdOQkI0hui:rUUvXjVTo9EHh1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T121250291DEAB50F9DA1B2074502FAA7F951226494F39EDCBC3C00D87D66BFF02036966
sha3_384: 6d3c99658891263c254fcd01c0f9c202b7bcacae44b682d716387a52fa1c7661e417a0bfb5a9b3ff31f6be01d669a569
ep_bytes: 627755446b486a5a566550484e594248
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

HackTool:Win32/CobaltStrike!pz also known as:

BkavW32.AIDetectMalware
DrWebTrojan.PWS.Banker1.30278
FireEyeGeneric.mg.58711850424c885a
SkyhighBehavesLike.Win32.Generic.dh
McAfeeGenericRXNR-AT!58711850424C
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Save.a
SymantecPacked.Generic.551
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Razy-7331671-0
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
SophosTroj/Miner-ABH
SentinelOneStatic AI – Malicious PE
GoogleDetected
Antiy-AVLTrojan/Win32.AGeneric
Kingsoftmalware.kb.a.965
MicrosoftHackTool:Win32/CobaltStrike!pz
XcitiumTrojWare.Win32.TrojanDownloader.Banload.RES@8hfp75
GDataWin32.Application.Agent.ZER5UH
VaristW32/S-8f4e9221!Eldorado
AhnLab-V3Trojan/Win32.Banload.C3470781
Acronissuspicious
VBA32TrojanPSW.Banker
RisingHackTool.CobaltStrike!8.1216E (TFE:3:9ER1rxEHsoO)
IkarusTrojan.Win64.CoinMiner
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.7267!tr
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove HackTool:Win32/CobaltStrike!pz?

HackTool:Win32/CobaltStrike!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment