Crack

HackTool:Win32/CobaltStrike!pz removal instruction

Malware Removal

The HackTool:Win32/CobaltStrike!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool:Win32/CobaltStrike!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine HackTool:Win32/CobaltStrike!pz?


File Info:

name: 2E2DABCBF61591697907.mlw
path: /opt/CAPEv2/storage/binaries/4845e209d0a713bc10ab3e152cccfdd27cef8863d0dba8da85303e3904c8b9ec
crc32: CF010A09
md5: 2e2dabcbf6159169790741f0403e6eb6
sha1: 02f7959c16de9fb957e4005836a276024cb16775
sha256: 4845e209d0a713bc10ab3e152cccfdd27cef8863d0dba8da85303e3904c8b9ec
sha512: c5cea50cb7c02e507eb9685c389b4bc64441ad974c2633e4ae36fdc49c4ed2e1880d92c63002d6bde2c9d638fb72122ff145cce6ceb0179957050660b3111296
ssdeep: 24576:vBWelxqsfNMmSGobKbHZkRUQ6oU2mjyBDbkQokh8H8F98c3wzT94sIlVObPf:8etoSkZNKaoyhL4dzWdsb3
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T126552342DC5E4A3EC764527C28BB0F8F67D4CE514268EADBD3971DCE868EAD04077229
sha3_384: 3d5a42fa0723a78ed5e99f5e8f0728f29505fc4369e56fca356645a02671b59578b0d1e8968316588e35e364e1a650ee
ep_bytes: 6f634a527376474862534f4c55485758
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

HackTool:Win32/CobaltStrike!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Banload.4!c
CynetMalicious (score: 100)
FireEyeGeneric.mg.2e2dabcbf6159169
SkyhighBehavesLike.Win32.Generic.tm
McAfeeArtemis!2E2DABCBF615
SangforSuspicious.Win32.Save.a
AlibabaHackTool:Win32/CobaltStrike.88e0a00d
ArcabitTrojan.Ulise.D33E1F
SymantecPacked.Generic.551
ClamAVWin.Trojan.Banload-9853585-0
BitDefenderGen:Variant.Ulise.212511
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
MicroWorld-eScanGen:Variant.Ulise.212511
EmsisoftGen:Variant.Ulise.212511 (B)
DrWebTrojan.PWS.Banker1.30278
VIPREGen:Variant.Ulise.212511
SophosTroj/Miner-ABM
IkarusTrojan.Win64.CoinMiner
VaristW32/S-8f4e9221!Eldorado
Antiy-AVLTrojan/Win32.AGeneric
Kingsoftmalware.kb.a.995
XcitiumTrojWare.Win32.TrojanDownloader.Banload.RES@8hfp75
MicrosoftHackTool:Win32/CobaltStrike!pz
GDataGen:Variant.Ulise.212511
GoogleDetected
AhnLab-V3Trojan/Win32.Banload.C3470781
Acronissuspicious
MAXmalware (ai score=88)
VBA32TrojanPSW.Banker
MalwarebytesGeneric.Malware.AI.DDS
RisingTrojan.CoinMiner!8.30A (TFE:3:5cIR0VatZEU)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Banload.BD2A!tr
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove HackTool:Win32/CobaltStrike!pz?

HackTool:Win32/CobaltStrike!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment