Crack

HackTool:Win32/CobaltStrike!pz removal tips

Malware Removal

The HackTool:Win32/CobaltStrike!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:Win32/CobaltStrike!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine HackTool:Win32/CobaltStrike!pz?


File Info:

name: D4D0841FE8322F58F7AA.mlw
path: /opt/CAPEv2/storage/binaries/cd35acdec439e5589bb9749d999a6fe2a78075941ec8b1155059ad60d8437bb3
crc32: 9A5AF172
md5: d4d0841fe8322f58f7aaf9a0c5c7dd58
sha1: cab988e9387ba4e3ed45d6d9e523e90f4dac5531
sha256: cd35acdec439e5589bb9749d999a6fe2a78075941ec8b1155059ad60d8437bb3
sha512: 77ae8bb44948537c1ba8afc3a6e6a1d99963647f7445bc7391ceaf3659c27de9f4e4bb4589b98aa7c2eb00c51e321c0b83b2fd6f2e8f80de961f119939669382
ssdeep: 12288:wqBWCet0qyBxqns0Dk4sHMIV77nMrx8ID9D2fIQzD2VPiF73kbVub79Ph:vBWelxqsfNMNr79DsIMDAPW7UCh
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T199D42347EDAF54BACB0D11784C6B0BCF234689059318E9C7EBC56EE5C64E9EE0932178
sha3_384: 0e52f7d67086c442f30dd6ba4ca088234df9c31b47249cf603cde37d8c5c15f13c509c76ffd13fd2d499ed8aebcd37df
ep_bytes: 7a59766e70706c5661645848556b7258
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

HackTool:Win32/CobaltStrike!pz also known as:

CyrenCloudW32/S-8f4e9221!Eldorado
BkavW32.AIDetectMalware
LionicTrojan.Win32.Banload.4!c
FireEyeGeneric.mg.d4d0841fe8322f58
SkyhighBehavesLike.Win32.Generic.jm
McAfeeArtemis!D4D0841FE832
SangforSuspicious.Win32.Save.a
SymantecPacked.Generic.551
CynetMalicious (score: 100)
ClamAVWin.Trojan.Banload-9853585-0
NANO-AntivirusTrojan.Win32.Miner.jeccbt
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
DrWebTrojan.PWS.Banker1.30278
SophosTroj/Miner-ABM
SentinelOneStatic AI – Malicious PE
Antiy-AVLTrojan/Win32.AGeneric
Kingsoftmalware.kb.a.994
XcitiumTrojWare.Win32.TrojanDownloader.Banload.RES@8hfp75
MicrosoftHackTool:Win32/CobaltStrike!pz
GDataWin32.Trojan.Agent.6L4OH8
VaristW32/S-8f4e9221!Eldorado
AhnLab-V3Trojan/Win32.Banload.C3470781
Acronissuspicious
VBA32TrojanPSW.Banker
MalwarebytesGeneric.Malware.AI.DDS
RisingTrojan.Generic@AI.100 (RDML:P3rrEBeCk2lcNv+R8Bf+7g)
IkarusTrojan.Win64.CoinMiner
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Banload.BD2A!tr
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove HackTool:Win32/CobaltStrike!pz?

HackTool:Win32/CobaltStrike!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment