Crack

How to remove “HackTool:Win32/CobaltStrike!pz”?

Malware Removal

The HackTool:Win32/CobaltStrike!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:Win32/CobaltStrike!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine HackTool:Win32/CobaltStrike!pz?


File Info:

name: 5046BE8AA35730A8A602.mlw
path: /opt/CAPEv2/storage/binaries/0997687f92b1ad5a1cfd1b731a6911e3e41597f4c02eb173661784ac54ac4217
crc32: 6C995450
md5: 5046be8aa35730a8a602062fa54a3ecb
sha1: 93cad3ab6241423ca46de04f284fbf6c158b6edc
sha256: 0997687f92b1ad5a1cfd1b731a6911e3e41597f4c02eb173661784ac54ac4217
sha512: f5e83c7b665e59c91ae8e793f158ad221844b452bb923708ecf0dcd2424dc4895ec5bb04b33963de7873d534d0bc84c2987778f60f676158c7ae0ef1e9e4af65
ssdeep: 24576:vBF672l6i2Ncb2ygupgrnACAmZ/NwFC31G3AcMxA7DELKcW7wpebBQLn2IBP3WKG:r56uL3pgrCEdMKPFoZ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D5751AA0EDEF00F4EA035870955BA23F5731270A5B38DDD7C6841E82E667EF2553392A
sha3_384: e7d9bdf1f2f4433edc11e1ca89aec503b36f52fe41c3d96e0354e3becf0854d7de334944982ac7d720a3be3c477610a3
ep_bytes: 83ec0c8b44240c8d5c24108944240489
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

HackTool:Win32/CobaltStrike!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Banload.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.5046be8aa35730a8
SkyhighBehavesLike.Win32.Generic.th
ALYacTrojan.GenericKD.45989870
ZillyaDownloader.Banload.Win32.88671
SangforTrojan.Win32.Save.a
AlibabaHackTool:Win32/CobaltStrike.2a8df0fe
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.Generic.D2BDBFEE
SymantecPacked.Generic.551
ClamAVWin.Malware.Eati-7331875-0
BitDefenderTrojan.GenericKD.45989870
NANO-AntivirusTrojan.Win32.Banker1.inibrb
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
MicroWorld-eScanTrojan.GenericKD.45989870
RisingTrojan.Generic@AI.87 (RDMK:tjLZt8jSB20vybEJQ9nBUw)
EmsisoftTrojan.GenericKD.45989870 (B)
DrWebTrojan.PWS.Banker1.30278
VIPRETrojan.GenericKD.45989870
SophosTroj/Miner-ABA
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Pushel.c
VaristW32/S-8f4e9221!Eldorado
Antiy-AVLTrojan/Win32.AGeneric
XcitiumTrojWare.Win32.TrojanDownloader.Banload.RES@8hfp75
MicrosoftHackTool:Win32/CobaltStrike!pz
GDataTrojan.GenericKD.45989870
GoogleDetected
AhnLab-V3Trojan/Win32.Banload.C3470781
Acronissuspicious
McAfeeGenericRXNR-AT!5046BE8AA357
MAXmalware (ai score=86)
VBA32TrojanPSW.Banker
MalwarebytesGeneric.Malware.AI.DDS
IkarusTrojan.Win64.CoinMiner
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.7267!tr
DeepInstinctMALICIOUS

How to remove HackTool:Win32/CobaltStrike!pz?

HackTool:Win32/CobaltStrike!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment