Crack

How to remove “HackTool:Win32/CobaltStrike!pz”?

Malware Removal

The HackTool:Win32/CobaltStrike!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:Win32/CobaltStrike!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine HackTool:Win32/CobaltStrike!pz?


File Info:

name: 99633BE3059C8E3799F2.mlw
path: /opt/CAPEv2/storage/binaries/07c39c9dd546fce031ec5160cfc27e77bc32fd034721d9b30884743a89750afa
crc32: 47714A1C
md5: 99633be3059c8e3799f27a374328345c
sha1: d13dfce6b9584b8efd60d93404042fa465617951
sha256: 07c39c9dd546fce031ec5160cfc27e77bc32fd034721d9b30884743a89750afa
sha512: 0b317923c3f746c595bbd7264b41cd549ca9c424dc60aae4997e3d8e443443f4d226cf89ddc2d7eed1171412f6156bbc1fdb621c2ed27a52620030a2eb1d0cd6
ssdeep: 24576:vBWelxqsfNMNr79DsIZcGf3ggHFlyyJ4kmCahuGUDRNr+u4LMxG9Se2hWjBO4V4J:8F/Y2jSzUwB7ueHs
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1638523128E2F4C7FCB1C2678147F0B4B67A54E408314A6E7FBD66D9AC74FB5614232A8
sha3_384: ec1a9c3e16a3aad5a8f652f463feeab27f93802dc93883adce6e3a7bfed0cf92f19b24978ba1d952e1210a3d04af30ef
ep_bytes: 7a59766e70706c5661645848556b7258
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

HackTool:Win32/CobaltStrike!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Banload.4!c
FireEyeGeneric.mg.99633be3059c8e37
SkyhighBehavesLike.Win32.Generic.tm
McAfeeArtemis!99633BE3059C
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
SymantecPacked.Generic.551
Elasticmalicious (moderate confidence)
CynetMalicious (score: 100)
ClamAVWin.Trojan.Banload-9853585-0
NANO-AntivirusTrojan.Win32.Miner.jeccbt
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
SophosTroj/Miner-ABM
DrWebTrojan.PWS.Banker1.30278
IkarusTrojan.Win64.CoinMiner
VaristW32/S-8f4e9221!Eldorado
Antiy-AVLTrojan/Win32.AGeneric
XcitiumTrojWare.Win32.TrojanDownloader.Banload.RES@8hfp75
MicrosoftHackTool:Win32/CobaltStrike!pz
GDataWin32.Trojan.Agent.LERRQC
GoogleDetected
AhnLab-V3Trojan/Win32.Banload.C3470781
Acronissuspicious
VBA32TrojanPSW.Banker
MalwarebytesGeneric.Malware.AI.DDS
RisingTrojan.Vindor!8.10CC (RDMK:cmRtazp8s+EWeEFAjF6tX6atT+Az)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Banload.BD2A!tr
DeepInstinctMALICIOUS

How to remove HackTool:Win32/CobaltStrike!pz?

HackTool:Win32/CobaltStrike!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment