Malware

Heur.Zboter.4 information

Malware Removal

The Heur.Zboter.4 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Heur.Zboter.4 virus can do?

  • Unconventionial language used in binary resources: Korean
  • The binary likely contains encrypted or compressed data.

How to determine Heur.Zboter.4?


File Info:

crc32: FB985896
md5: 421f8279013893eb1bc06a59afe060d1
name: 421F8279013893EB1BC06A59AFE060D1.mlw
sha1: 7d203a4369fa10bdd42a0f2a7ff8b186e7f8aa1e
sha256: 9b8de1bc349887f2d949a7622c06e785f64f51107cb1cc3e85a10ebd86213415
sha512: 7bb9590c362051f8875353a1529a48aaca379b337d3ce5e4eb7a36ff58f44e9be4e17813d94271954773548b4e49e1f2ce55173c6aa3eb9089306048a6b616c1
ssdeep: 12288:wbWACB8y1Q0I4nyWAnEXhtUYbejt4LOQql4GlIHYN:wbWACBTQv9WAnEXNeh4LqBlL
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2003
InternalName: WebSetup
FileVersion: 1, 0, 0, 1
CompanyName:
LegalTrademarks:
ProductName: WebSetup xc751xc6a9 xd504xb85cxadf8xb7a8
ProductVersion: 1, 0, 0, 1
FileDescription: WebSetup MFC xc751xc6a9 xd504xb85cxadf8xb7a8
OriginalFilename: WebSetup.EXE
Translation: 0x0412 0x04b0

Heur.Zboter.4 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
ALYacGen:Heur.Zboter.4
BitDefenderGen:Heur.Zboter.4
Cybereasonmalicious.901389
APEXMalicious
MicroWorld-eScanGen:Heur.Zboter.4
Ad-AwareGen:Heur.Zboter.4
McAfee-GW-EditionBehavesLike.Win32.Dropper.hc
FireEyeGeneric.mg.421f8279013893eb
EmsisoftGen:Heur.Zboter.4 (B)
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Zpevdo.A
GDataGen:Heur.Zboter.4
Acronissuspicious
McAfeeArtemis!421F82790138
MAXmalware (ai score=87)
VBA32BScope.TrojanRansom.CryFile
TrendMicro-HouseCallTROJ_GEN.R002H09EA21
RisingTrojan.Generic@ML.88 (RDML:P3eifxPSyJQI/O12aOh5Gw)
MaxSecureTrojan.Malware.8992631.susgen
Paloaltogeneric.ml

How to remove Heur.Zboter.4?

Heur.Zboter.4 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment