Crack

HackTool:Win32/CobaltStrike!pz removal guide

Malware Removal

The HackTool:Win32/CobaltStrike!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:Win32/CobaltStrike!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine HackTool:Win32/CobaltStrike!pz?


File Info:

name: 1D4F1C3A8744431ECF08.mlw
path: /opt/CAPEv2/storage/binaries/46de1c17427d05196aeaedcd7cd992a3452635938dff0e6fa119556fd965b23a
crc32: DA9C738C
md5: 1d4f1c3a8744431ecf08a170b870bade
sha1: 1306cad3cc8bca1b2e58f1f67b1f01d1ce079779
sha256: 46de1c17427d05196aeaedcd7cd992a3452635938dff0e6fa119556fd965b23a
sha512: fdf311877c80c5d0c455106ae06f46ee41a21502d1603855b8756cfd99fd43f648065e31a52b26215eeaf465b87325e37998e116d6a837873666183e433595d8
ssdeep: 24576:vBF672l6i2Ncb2ygupgrnACAmZ/NwFC31G3AcMxA7DELKcW7wpebBQLn2IBP3WKL:r56uL3pgrCEdMKPSOjB
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D7550BA0EDEF10F4EA035870955BA23F5321270A9B38DDDBC6841E82D677EF25533926
sha3_384: 69a49e20a3632ee989a3888f8f4f3dd2db61ffb5677aa332e4e4d7ae7b6e8c6ab129ea50bdc3f47db46ae276804e6697
ep_bytes: 83ec0c8b44240c8d5c24108944240489
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

HackTool:Win32/CobaltStrike!pz also known as:

BkavW32.AIDetectMalware
DrWebTrojan.PWS.Banker1.30278
MicroWorld-eScanTrojan.GenericKD.45989870
SkyhighBehavesLike.Win32.Generic.th
McAfeeGenericRXNR-AT!1D4F1C3A8744
MalwarebytesGeneric.Malware.AI.DDS
ZillyaDownloader.Banload.Win32.88671
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
ArcabitTrojan.Generic.D2BDBFEE
SymantecPacked.Generic.551
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ClamAVWin.Malware.Generickdz-9831451-0
BitDefenderTrojan.GenericKD.45989870
NANO-AntivirusTrojan.Win32.Banker1.inibrb
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
EmsisoftTrojan.GenericKD.45989870 (B)
VIPRETrojan.GenericKD.45989870
FireEyeGeneric.mg.1d4f1c3a8744431e
SophosTroj/Miner-ABA
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Pushel.c
VaristW32/S-8f4e9221!Eldorado
MAXmalware (ai score=86)
Antiy-AVLTrojan/Win32.AGeneric
XcitiumTrojWare.Win32.TrojanDownloader.Banload.RES@8hfp75
MicrosoftHackTool:Win32/CobaltStrike!pz
GDataTrojan.GenericKD.45989870
GoogleDetected
AhnLab-V3Trojan/Win32.Banload.C3470781
Acronissuspicious
VBA32TrojanPSW.Banker
ALYacTrojan.GenericKD.45989870
RisingTrojan.Generic@AI.87 (RDMK:tjLZt8jSB20vybEJQ9nBUw)
IkarusTrojan.Win64.CoinMiner
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.7267!tr

How to remove HackTool:Win32/CobaltStrike!pz?

HackTool:Win32/CobaltStrike!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Crack

HackTool:Win32/CobaltStrike!pz malicious file

Malware Removal

The HackTool:Win32/CobaltStrike!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:Win32/CobaltStrike!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine HackTool:Win32/CobaltStrike!pz?


File Info:

name: C99C1362CDBDDA4026EB.mlw
path: /opt/CAPEv2/storage/binaries/d446da1901fb1c1489fb955001563b1c7ddb20e4abee84f6027b7edd818ceed0
crc32: 6FA545EF
md5: c99c1362cdbdda4026eb38cdb0f9e4e4
sha1: 739feb85ec0eae3c387c4934391c1e4846987202
sha256: d446da1901fb1c1489fb955001563b1c7ddb20e4abee84f6027b7edd818ceed0
sha512: ffc18852beed3bf34a988446808f3506fa1bc0333a4a59bd1d3f3d8fba07f67091da149d94101f6b7dc41f8d63863756f6fcdce78025c548ebabad9acac20b0e
ssdeep: 24576:vBWelxqsfNMNr79DsIZcGf3ggHFlyyJ4kmCahuGUDRNr+u4LMxG9Se2hpBLHz//:8F/Y2jSzUwBej
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F17523018D2F4D7ECB2D227414BF0B8F67A50E409314E5EBBAD65DE6C64EF9610236AC
sha3_384: a623b6fcccaa1c55f1f75a5b13e980f0857af10db4d7aec18d0eee15096d7907fd20f23e06f7995297355c3b71e86490
ep_bytes: 7a59766e70706c5661645848556b7258
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

HackTool:Win32/CobaltStrike!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Banload.4!c
Elasticmalicious (moderate confidence)
ClamAVWin.Trojan.Banload-9853585-0
FireEyeGeneric.mg.c99c1362cdbdda40
SkyhighBehavesLike.Win32.Generic.tm
SangforSuspicious.Win32.Save.a
AlibabaHackTool:Win32/CobaltStrike.b1658a22
CrowdStrikewin/malicious_confidence_100% (W)
SymantecPacked.Generic.551
CynetMalicious (score: 100)
NANO-AntivirusTrojan.Win32.Miner.jeccbt
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
SophosTroj/Miner-ABM
DrWebTrojan.PWS.Banker1.30278
IkarusTrojan.Win64.CoinMiner
GoogleDetected
Antiy-AVLTrojan/Win32.AGeneric
XcitiumTrojWare.Win32.TrojanDownloader.Banload.RES@8hfp75
MicrosoftHackTool:Win32/CobaltStrike!pz
GDataWin32.Trojan.Agent.S3LJVV
VaristW32/S-8f4e9221!Eldorado
AhnLab-V3Trojan/Win32.Banload.C3470781
Acronissuspicious
McAfeeArtemis!C99C1362CDBD
VBA32TrojanPSW.Banker
MalwarebytesGeneric.Malware.AI.DDS
RisingTrojan.Vindor!8.10CC (RDMK:cmRtazp8s+EWeEFAjF6tX6atT+Az)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Banload.BD2A!tr
DeepInstinctMALICIOUS

How to remove HackTool:Win32/CobaltStrike!pz?

HackTool:Win32/CobaltStrike!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment