Crack

How to remove “HackTool:Win32/CobaltStrike!pz”?

Malware Removal

The HackTool:Win32/CobaltStrike!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:Win32/CobaltStrike!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine HackTool:Win32/CobaltStrike!pz?


File Info:

name: E762531E3C409EF3AC75.mlw
path: /opt/CAPEv2/storage/binaries/67882de8e8112878bb4b44d2ca32aad0627af4dbda7c43f7d874cf4e3f3e325c
crc32: E4ECB57E
md5: e762531e3c409ef3ac75bf6c284b7c52
sha1: 0a01e7a63df2e78f52be2a8d2702b9266bbcc003
sha256: 67882de8e8112878bb4b44d2ca32aad0627af4dbda7c43f7d874cf4e3f3e325c
sha512: 579581a22aa6b097dde2013082707045a1aaaf9f0018cc0bf5c8c90752f8cfc083995683fbb59ee20897d7dde10abae4c73cfda3a26fe3aeacef757635d09714
ssdeep: 24576:vBF672l6i2Ncb2ygupgrnACAmZ/NwFC31G3AcMaTH4zxzPEtZHWtM9heH3dJ:r56uL3pgrCEd2TcFEeb
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T190456EA0DDEF10F0EA079870955BA23F5221271A9F38DDCBC6841E82D677EF1153396A
sha3_384: 49fb5873506c3288893b73adfaf582e0e66f2a26db6646cac631e3a1a58ec70558edc9ab5afa802161588a2a10acb0bf
ep_bytes: 83ec0c8b44240c8d5c24108944240489
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

HackTool:Win32/CobaltStrike!pz also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanTrojan.GenericKD.45989870
FireEyeGeneric.mg.e762531e3c409ef3
SkyhighBehavesLike.Win32.Generic.th
McAfeeGenericRXNR-AT!E762531E3C40
MalwarebytesGeneric.Malware.AI.DDS
ZillyaDownloader.Banload.Win32.88671
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
SymantecPacked.Generic.551
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ClamAVWin.Trojan.Razy-7331670-0
BitDefenderTrojan.GenericKD.45989870
NANO-AntivirusTrojan.Win32.Banker1.inibrb
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
EmsisoftTrojan.GenericKD.45989870 (B)
DrWebTrojan.PWS.Banker1.30278
VIPRETrojan.GenericKD.45989870
SophosTroj/Miner-ABH
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Pushel.c
VaristW32/S-8f4e9221!Eldorado
MAXmalware (ai score=83)
Antiy-AVLTrojan/Win32.AGeneric
Kingsoftmalware.kb.a.837
MicrosoftHackTool:Win32/CobaltStrike!pz
XcitiumTrojWare.Win32.TrojanDownloader.Banload.RES@8hfp75
ArcabitTrojan.Generic.D2BDBFEE
GDataTrojan.GenericKD.45989870
GoogleDetected
AhnLab-V3Trojan/Win32.Banload.C3470781
Acronissuspicious
VBA32TrojanPSW.Banker
ALYacTrojan.GenericKD.45989870
TrendMicro-HouseCallTROJ_GEN.R03BH0CC424
RisingTrojan.Generic@AI.100 (RDML:1z7aVdU3R5K15Cx0S+8jiw)
IkarusTrojan.Win64.CoinMiner
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.7267!tr
Cybereasonmalicious.e3c409

How to remove HackTool:Win32/CobaltStrike!pz?

HackTool:Win32/CobaltStrike!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Crack

HackTool:Win32/CobaltStrike!pz information

Malware Removal

The HackTool:Win32/CobaltStrike!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:Win32/CobaltStrike!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine HackTool:Win32/CobaltStrike!pz?


File Info:

name: 99AD1299FCB147CD7D04.mlw
path: /opt/CAPEv2/storage/binaries/38336a15f6aa66973f1530406c2dd38d47fe29d12e978be7e7c513a5da829ace
crc32: 16C7AB6C
md5: 99ad1299fcb147cd7d043f98e40ba0e8
sha1: f0a0e4e4ad66a68a94df8bf32d2dedc9c6b0acaf
sha256: 38336a15f6aa66973f1530406c2dd38d47fe29d12e978be7e7c513a5da829ace
sha512: 6ee73c4596d3fe8b2c18d04f09b86c1bf6864aa275d9b2bcf2b83ff71af850155d0e702f11e8d08bb09f1fb6272a87d13e63b66eba5fe48c4a83db20288f6411
ssdeep: 24576:vBWelxqsfNMNr79DsIZcGf3ggHFlyyJ4kmCahuGUDRNr+mvQWwTOhmU7D4Sp6Pfx:8F/Y2jSzUxmQd6PM/Woo
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D28523038E6A4D7FCF5C1279147F1BCF33685E408224A9D7BAD66DE6C18E95A14332AC
sha3_384: 0379e15618708ada8b6c2c28f412f9736c27bee6aa7b8a5b99caa8c5b4262e1622c42a4661be047aba2178589b0442df
ep_bytes: 7a59766e70706c5661645848556b7258
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

HackTool:Win32/CobaltStrike!pz also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Banker1.30278
FireEyeGeneric.mg.99ad1299fcb147cd
SkyhighBehavesLike.Win32.Generic.tm
McAfeeArtemis!99AD1299FCB1
MalwarebytesGeneric.Malware.AI.DDS
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
SymantecPacked.Generic.551
CynetMalicious (score: 100)
NANO-AntivirusTrojan.Win32.Miner.jeccbt
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
SophosTroj/Miner-ABM
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.Agent.GPL5XD
VaristW32/S-8f4e9221!Eldorado
Antiy-AVLTrojan/Win32.AGeneric
Kingsoftmalware.kb.a.994
XcitiumTrojWare.Win32.TrojanDownloader.Banload.RES@8hfp75
MicrosoftHackTool:Win32/CobaltStrike!pz
GoogleDetected
AhnLab-V3Trojan/Win32.Banload.C3470781
Acronissuspicious
VBA32TrojanPSW.Banker
IkarusTrojan.Win64.CoinMiner
FortinetW32/Banload.BD2A!tr

How to remove HackTool:Win32/CobaltStrike!pz?

HackTool:Win32/CobaltStrike!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment