Crack

HackTool:Win32/CobaltStrike!pz removal instruction

Malware Removal

The HackTool:Win32/CobaltStrike!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:Win32/CobaltStrike!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine HackTool:Win32/CobaltStrike!pz?


File Info:

name: C53CC0CDF0B5CB1831FC.mlw
path: /opt/CAPEv2/storage/binaries/bc7c61c6c5a1192d0c30828ba4a3c6ab003f5b241abc96e0d8735a0e55b4cf20
crc32: 21D56A55
md5: c53cc0cdf0b5cb1831fc9542a9f17df1
sha1: 43d5182a3014d847aafd981e3d3ecd10a900b5b7
sha256: bc7c61c6c5a1192d0c30828ba4a3c6ab003f5b241abc96e0d8735a0e55b4cf20
sha512: 1ba950062ca74a071249f9b375e9fcf63d8937db30e6c169ae6cd3cbcd16a2b64b712e173d8aaba381f130c5b7b0d47784423aa9eec474ae25f8fb5e9ed79632
ssdeep: 12288:wqBWCet0qyBxqns0Dk4sHMIV77nMrx8ID9D2fIQzD2i+7Sx6vQQst89AV9OqHFd3:vBWelxqsfNMNr79DsIMDlTovQ3SU9Oqf
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14CF42346EE6F48FFC649227E1C7F4A8F225258494319DCD3E7C92ED1C64EADA0533268
sha3_384: 9552ecd0ca2f407d45123d5d0d5490806b6ddb7b72f4b4e8927ec79743c799bb1160e185215404d764a9197739450d3d
ep_bytes: 7a59766e70706c5661645848556b7258
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

HackTool:Win32/CobaltStrike!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Banload.4!c
MicroWorld-eScanGen:Variant.Ulise.267041
FireEyeGeneric.mg.c53cc0cdf0b5cb18
SkyhighBehavesLike.Win32.Generic.bm
ALYacGen:Variant.Ulise.267041
SangforSuspicious.Win32.Save.a
AlibabaHackTool:Win32/CobaltStrike.cec5862c
Cybereasonmalicious.df0b5c
SymantecPacked.Generic.551
ClamAVWin.Trojan.Banload-9853585-0
BitDefenderGen:Variant.Ulise.267041
NANO-AntivirusTrojan.Win32.Miner.jeccbt
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
EmsisoftGen:Variant.Ulise.267041 (B)
DrWebTrojan.PWS.Banker1.30278
VIPREGen:Variant.Ulise.267041
SophosTroj/Miner-ABM
IkarusTrojan.Win64.CoinMiner
GoogleDetected
VaristW32/S-8f4e9221!Eldorado
Antiy-AVLTrojan/Win32.AGeneric
Kingsoftmalware.kb.a.993
MicrosoftHackTool:Win32/CobaltStrike!pz
XcitiumTrojWare.Win32.TrojanDownloader.Banload.RES@8hfp75
ArcabitTrojan.Ulise.D41321
GDataGen:Variant.Ulise.267041
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Banload.C3470781
Acronissuspicious
McAfeeArtemis!C53CC0CDF0B5
MAXmalware (ai score=85)
VBA32TrojanPSW.Banker
MalwarebytesGeneric.Malware.AI.DDS
TrendMicro-HouseCallTROJ_GEN.R002H09CB24
RisingTrojan.Generic@AI.100 (RDML:X4HAZMJHQucNejvWz+shlg)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Banload.BD2A!tr
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)
alibabacloudTrojan:Win/CoinMiner.UXW

How to remove HackTool:Win32/CobaltStrike!pz?

HackTool:Win32/CobaltStrike!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment