Malware

What is “Heur.IPZ.1”?

Malware Removal

The Heur.IPZ.1 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Heur.IPZ.1 virus can do?

  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Russian
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Heur.IPZ.1?


File Info:

crc32: 251E5DBC
md5: fb2b77c5f795b2dceb6d438c1256c81b
name: FB2B77C5F795B2DCEB6D438C1256C81B.mlw
sha1: 1a23f94f546a859a2ddd8aaa46387204ae29c081
sha256: dd882fccdd9526a5c25f72cbc4852fb981337b30c37596b5ace34973e6e12f3f
sha512: 1762041e58146d78d9ba0d579707ab84b884807211df87e20cd834019e2a61465285c1f8d54c4e0cc403b50ce1fb8bc51ea933e7429fdba591ffaebaab004453
ssdeep: 3072:h8YCMr7aXbtKwBDg3ogjPFkrrVzzWGChcinoc6JJDeFh2KutHAx7TO1LB:6YZrEb23ogjdWruhznocWJDXtg1TQ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2005-2010 Oleg N. Scherbakov
InternalName: 7ZSfxMod
FileVersion: 1.4.0.1659
CompanyName: Oleg N. Scherbakov
PrivateBuild: February 12, 2010
ProductName: 7-Zip SFX
ProductVersion: 1.4.0.1659
FileDescription: 7z Setup SFX (x86)
OriginalFilename: 7ZSfxMod_x86.exe
Translation: 0x0000 0x04b0

Heur.IPZ.1 also known as:

DrWebWin32.HLLW.Autoruner1.31739
CynetMalicious (score: 99)
ALYacGen:Heur.IPZ.1
CylanceUnsafe
AlibabaTrojanDownloader:Win32/MultiDropper.dfdf5e0e
Cybereasonmalicious.5f795b
SymantecTrojan.ADH
APEXMalicious
AvastWin32:Crypt-IQU [Trj]
ClamAVWin.Downloader.134615-1
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Heur.IPZ.1
NANO-AntivirusTrojan.Win32.CodecPack.ifsaq
MicroWorld-eScanGen:Heur.IPZ.1
TencentWin32.Trojan.Dropper.Eddr
Ad-AwareGen:Heur.IPZ.1
SophosMal/Generic-S
ComodoMalware@#37nt7q2zhsriu
BitDefenderThetaGen:NN.ZexaF.34170.jq3@auqxq9mk
VIPRETrojan.Win32.Generic.pak!cobra
McAfee-GW-EditionMultiDropper-UA
FireEyeGen:Heur.IPZ.1
EmsisoftGen:Heur.IPZ.1 (B)
JiangminTrojanDownloader.CodecPack.cbl
AviraTR/Dropper.Gen2
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.5EDFB
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Heur.IPZ.1
McAfeeMultiDropper-UA
MAXmalware (ai score=80)
VBA32TrojanDownloader.CodecPack
PandaTrj/CI.A
YandexTrojan.Agent!y7lEkyoDx3w
IkarusTrojan.Win32.Chifrax
FortinetW32/Generic.AC.26CB86!tr
AVGWin32:Crypt-IQU [Trj]
Paloaltogeneric.ml

How to remove Heur.IPZ.1?

Heur.IPZ.1 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment