Malware

Mal/AmmZan-E information

Malware Removal

The Mal/AmmZan-E is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/AmmZan-E virus can do?

  • Sample contains Overlay data
  • Unconventionial language used in binary resources: Catalan
  • Authenticode signature is invalid

How to determine Mal/AmmZan-E?


File Info:

name: CF1A2C7F61869A9ED4C8.mlw
path: /opt/CAPEv2/storage/binaries/08ad8513d25c63cd0bd6c51ac1645020270b8feb4f87f042f6ada5f7c3c158d4
crc32: 292FB59C
md5: cf1a2c7f61869a9ed4c8a271fbee8a80
sha1: 603370b05f2840b8b833244b34ca7a169e7ddf47
sha256: 08ad8513d25c63cd0bd6c51ac1645020270b8feb4f87f042f6ada5f7c3c158d4
sha512: a2d491012d7616e8c6e7f52ec7587bbeaca0cf8a3b2f4b4f232ba9fb1a660064125af707bc1c37229bb24147ddd2e25677cfbc8c255d3f54770eed873239046b
ssdeep: 3072:5M96grWMRbctog9i0H2RXjT4wZUKMYT0R088N8OQ5:5M96gnbctogLH2RNfMYT8dOQ5
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A204AED5AF2235DBF9E077B049BA0EF36BF68B387E0475168DC0417A04A80299ED8957
sha3_384: 28953d479a77b6cc5c63e8a183e65309c4c39b0f47daa4cae1ae876b423598d504ef6b4e16eb578932379bf475d8dbb0
ep_bytes: 68366a0000f858eb6400000069bce8ca
timestamp: 2002-06-12 07:34:54

Version Info:

0: [No Data]

Mal/AmmZan-E also known as:

BkavW32.AIDetectMalware
LionicWorm.Win32.Mabezat.li99
DrWebWin32.HLLW.Tazebama
MicroWorld-eScanWin32.Virtob.Gen.12
CAT-QuickHealW32.Virut.G
SkyhighBehavesLike.Win32.Virut.ch
McAfeeArtemis!CF1A2C7F6186
Cylanceunsafe
SangforTrojan.Win32.Save.a
K7AntiVirusVirus ( f10002001 )
BitDefenderWin32.Virtob.Gen.12
K7GWVirus ( f10002001 )
Cybereasonmalicious.f61869
BitDefenderThetaAI:FileInfector.C9457D4313
VirITWin32.Scribble.Q
SymantecW32.Mabezat.B
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Mabezat.H
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
AvastWin32:Agent-AVCE [Trj]
RisingWorm.Mabezat!1.995D (CLASSIC)
EmsisoftWin32.Virtob.Gen.12 (B)
F-SecureWorm.WORM/Mabezat.b
ZillyaWorm.MabezatGen.Win32.1
TrendMicroPE_MABEZAT.SM
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.cf1a2c7f61869a9e
SophosMal/AmmZan-E
SentinelOneStatic AI – Malicious PE
JiangminTrojanDropper.Agent.aqrd
VaristW32/Mabezat.FRWO-1177
AviraWORM/Mabezat.b
MAXmalware (ai score=100)
Antiy-AVLWorm/Win32.Mabezat
KingsoftWin32.Virut.ea.368640
XcitiumWorm.Win32.Mabezat.b@14k3c8
MicrosoftTrojan:Win32/Wacatac.B!ml
SUPERAntiSpywareTrojan.Agent/Gen-Mabezat
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataWin32.Virtob.Gen.12
GoogleDetected
AhnLab-V3HEUR/Fakon.mow.X1351
Acronissuspicious
ALYacWin32.Virtob.Gen.12
MalwarebytesGeneric.Malware.AI.DDS
TrendMicro-HouseCallPE_MABEZAT.SM
TencentWin32.Virus.Mabezat.Szfl
YandexTrojan.Agent!Vm/e9wskspU
IkarusWorm.Win32.Mabezat
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Virut.CE
AVGWin32:Agent-AVCE [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (W)
alibabacloudTrojan

How to remove Mal/AmmZan-E?

Mal/AmmZan-E removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment