Crack

How to remove “HackTool:Win32/CobaltStrike!pz”?

Malware Removal

The HackTool:Win32/CobaltStrike!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:Win32/CobaltStrike!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine HackTool:Win32/CobaltStrike!pz?


File Info:

name: 7FBF84B50503B02B3650.mlw
path: /opt/CAPEv2/storage/binaries/d8841858bec2c2236beb9d2490ec7c6742078a6f039be99e59d412905cf1dd88
crc32: 45A2089B
md5: 7fbf84b50503b02b36507d9ec4529fd0
sha1: da263b8ebbafaf244eb09e20afed56c34a489062
sha256: d8841858bec2c2236beb9d2490ec7c6742078a6f039be99e59d412905cf1dd88
sha512: 9d084b7078e4ddff070be81a6e2d1706f3f99ce7e9afd13a1b35cc05a1ac245d9701400e26c521be59fa3e415523ca3759fd5c699ba6b630719eca8f054e7238
ssdeep: 24576:vBF672l6i2Ncb2ygupgrnACAmZ/NwFC31G3AcMaMYXoFR/s7bvp9vD/7w:r56uL3pgrCEd2hXe/s7HvDDw
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C8657EA0DDEF10F0EA079870956BA23F5225271A5F38DDCBC6841E82D677EF1153392A
sha3_384: 9fc9ac0a36a7d12684aeb0700bf4c5b853085fafa89e84c23af7ada555f0715eeca6ef5c091ec1442be14bf46824c968
ep_bytes: 83ec0c8b44240c8d5c24108944240489
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

HackTool:Win32/CobaltStrike!pz also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Banker1.30278
MicroWorld-eScanTrojan.GenericKD.45989870
FireEyeGeneric.mg.7fbf84b50503b02b
SkyhighBehavesLike.Win32.Generic.th
McAfeeGenericRXNR-AT!7FBF84B50503
MalwarebytesGeneric.Malware.AI.DDS
VIPRETrojan.GenericKD.45989870
SangforTrojan.Win32.Save.a
ArcabitTrojan.Generic.D2BDBFEE
SymantecPacked.Generic.551
CynetMalicious (score: 100)
ClamAVWin.Trojan.Razy-7331680-0
BitDefenderTrojan.GenericKD.45989870
NANO-AntivirusTrojan.Win32.Banker1.inibrb
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
EmsisoftTrojan.GenericKD.45989870 (B)
ZillyaDownloader.Banload.Win32.88671
SophosTroj/Miner-ABH
IkarusTrojan.Win64.CoinMiner
JiangminTrojan.Pushel.c
VaristW32/S-8f4e9221!Eldorado
Antiy-AVLTrojan/Win32.AGeneric
Kingsoftmalware.kb.a.831
XcitiumTrojWare.Win32.TrojanDownloader.Banload.RES@8hfp75
MicrosoftHackTool:Win32/CobaltStrike!pz
GDataTrojan.GenericKD.45989870
GoogleDetected
AhnLab-V3Trojan/Win32.Banload.C3470781
Acronissuspicious
VBA32TrojanPSW.Banker
ALYacTrojan.GenericKD.45989870
MAXmalware (ai score=84)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.7267!tr
CrowdStrikewin/malicious_confidence_100% (W)

How to remove HackTool:Win32/CobaltStrike!pz?

HackTool:Win32/CobaltStrike!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Crack

HackTool:Win32/CobaltStrike!pz removal

Malware Removal

The HackTool:Win32/CobaltStrike!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:Win32/CobaltStrike!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine HackTool:Win32/CobaltStrike!pz?


File Info:

name: 60BCB7F86091E460DE7B.mlw
path: /opt/CAPEv2/storage/binaries/b2c77c621ceeb8d0feac6b98a0b6c762093887e74e250a353f266a43e958dd26
crc32: DCD83964
md5: 60bcb7f86091e460de7b6706c0cf714a
sha1: febd11a1866f2cbc6655516ec837362078617255
sha256: b2c77c621ceeb8d0feac6b98a0b6c762093887e74e250a353f266a43e958dd26
sha512: 07d805348583a7f1341239523708ebecbedf336f8a16df3306a98083f060ff495a55872d59dd356803800bfd2fe483ee49a3b464937befa5d37f6abccc1674e8
ssdeep: 24576:vBWelxqsfNMmSGobKbHZkRUQ6oU2mjyBDbkQokh8H8F98c3wzT94sIlKLM7:8etoSkZNKaoyhL4dzWdn
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FD552342DC6E8E3EC7555278287B0F8F57C4CE510268EAE7D3972DCECA8DAD14076268
sha3_384: 898243d3de9221eecd9f9a08c49985e0b1b5cb8b1b0ec7e5d4bc8aa3838e68790ccf342817a6d736bec0c4b76eaa6521
ep_bytes: 6f634a527376474862534f4c55485758
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

HackTool:Win32/CobaltStrike!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Banload.4!c
DrWebTrojan.PWS.Banker1.30278
MicroWorld-eScanGen:Variant.Ulise.212511
FireEyeGeneric.mg.60bcb7f86091e460
SkyhighBehavesLike.Win32.Generic.tm
McAfeeArtemis!60BCB7F86091
SangforSuspicious.Win32.Save.a
AlibabaHackTool:Win32/CobaltStrike.88e0a00d
ArcabitTrojan.Ulise.D33E1F
SymantecPacked.Generic.551
CynetMalicious (score: 100)
ClamAVWin.Trojan.Banload-9853585-0
BitDefenderGen:Variant.Ulise.212511
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
EmsisoftGen:Variant.Ulise.212511 (B)
VIPREGen:Variant.Ulise.212511
SophosTroj/Miner-ABM
IkarusTrojan.Win64.CoinMiner
VaristW32/S-8f4e9221!Eldorado
Antiy-AVLTrojan/Win32.AGeneric
XcitiumTrojWare.Win32.TrojanDownloader.Banload.RES@8hfp75
MicrosoftHackTool:Win32/CobaltStrike!pz
GDataGen:Variant.Ulise.212511
GoogleDetected
AhnLab-V3Trojan/Win32.Banload.C3470781
Acronissuspicious
VBA32TrojanPSW.Banker
ALYacGen:Variant.Ulise.212511
MAXmalware (ai score=88)
MalwarebytesGeneric.Malware.AI.DDS
RisingTrojan.CoinMiner!8.30A (TFE:3:5cIR0VatZEU)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Banload.BD2A!tr
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove HackTool:Win32/CobaltStrike!pz?

HackTool:Win32/CobaltStrike!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment