Malware

Should I remove “Heur.BZC.PZQ.Boxter.826.F3A18C4A”?

Malware Removal

The Heur.BZC.PZQ.Boxter.826.F3A18C4A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Heur.BZC.PZQ.Boxter.826.F3A18C4A virus can do?

  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Heur.BZC.PZQ.Boxter.826.F3A18C4A?


File Info:

name: C5D5E249A714668981F7.mlw
path: /opt/CAPEv2/storage/binaries/76a447f2c815c8ff84aa63d98f91ca897629034ff5bc49fa006d525778d0fceb
crc32: CE4FC18E
md5: c5d5e249a714668981f7d84acb7f2982
sha1: c8ec205915fa640bced203a1737903efa7f36ec8
sha256: 76a447f2c815c8ff84aa63d98f91ca897629034ff5bc49fa006d525778d0fceb
sha512: 971682e5f6c4f4322775a0576c371c75b3f2fd75eb301d04b6fdd2b785de865658ddfef112615b88f7fba4f2d1c845cf8f093caba0602041bfee5d5956eea853
ssdeep: 768:7YKlOFoYsWlDcXbOfq1Mkg6EmKOdF5/+WAJw3WNudjzkLuU:7LlBYjEbOGgSFdL/+hJOXJzkLuU
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T11623D7D4AA68C11FE1BF9F793CD1A5B149B5AE636201D6971CC80E5FA853B00CE0276B
sha3_384: 348112359b5b3d7893900348e7778ca36dad1c103e28e4e296fae9e85fbc75130de0ae66479c827d25932c8d704e345d
ep_bytes: 4d5a90000300000004000000ffff0000
timestamp: 2021-12-08 08:25:11

Version Info:

Translation: 0x0000 0x04b0
FileDescription: Compiled Script
FileVersion: 1.0
InternalName: test.exe
LegalCopyright: Urye
OriginalFilename: test.exe
ProductName: Microsoft
ProductVersion: 1.0
Assembly Version: 1.0.0.0

Heur.BZC.PZQ.Boxter.826.F3A18C4A also known as:

LionicTrojan.Win32.Boxter.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanHeur.BZC.PZQ.Boxter.826.F3A18C4A
McAfeeArtemis!C5D5E249A714
CylanceUnsafe
K7AntiVirusTrojan ( 005663a81 )
AlibabaTrojan:Win32/Shelma.00f65208
K7GWTrojan ( 005663a81 )
Cybereasonmalicious.9a7146
SymantecBackdoor.Cobalt
ESET-NOD32Win32/Rozena.ACE
TrendMicro-HouseCallTROJ_GEN.R002H0DL821
KasperskyTrojan.Win32.Shelma.brvs
BitDefenderHeur.BZC.PZQ.Boxter.826.F3A18C4A
AvastWin64:Trojan-gen
TencentWin32.Trojan.Bzc.Taev
Ad-AwareHeur.BZC.PZQ.Boxter.826.F3A18C4A
SophosMal/Generic-S
McAfee-GW-EditionArtemis!Trojan
FireEyeHeur.BZC.PZQ.Boxter.826.F3A18C4A
EmsisoftHeur.BZC.PZQ.Boxter.826.F3A18C4A (B)
IkarusTrojan.Win32.Rozena
GDataHeur.BZC.PZQ.Boxter.826.F3A18C4A
AviraTR/Rozena.jrrxt
GridinsoftRansom.Win64.Sabsik.sa
ArcabitHeur.BZC.PZQ.Boxter.826.F3A18C4A
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win.Generic.C4826921
ALYacHeur.BZC.PZQ.Boxter.826.F3A18C4A
MAXmalware (ai score=89)
APEXMalicious
MaxSecureTrojan.Malware.300983.susgen
FortinetPossibleThreat
WebrootW32.Trojan.Gen
AVGWin64:Trojan-gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Heur.BZC.PZQ.Boxter.826.F3A18C4A?

Heur.BZC.PZQ.Boxter.826.F3A18C4A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment