Malware

Mal/Generic-R + Troj/Zbot-NY (file analysis)

Malware Removal

The Mal/Generic-R + Troj/Zbot-NY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-R + Troj/Zbot-NY virus can do?

    How to determine Mal/Generic-R + Troj/Zbot-NY?

    
    

    File Info:

    crc32: FA0045F4
    md5: ef74895721b549a375c2a7a0f54a5750
    name: EF74895721B549A375C2A7A0F54A5750.mlw
    sha1: 5aec0fa18037ee1a8c9d276d452c0c09c476354c
    sha256: 79952bf63416d97f8d78b841679e8a773ed0fc6d7d911c116665a12e147a8533
    sha512: 23a32e12c29d2135f605c2f1bb194dca38f17d0c9e595cc68ac14041030e816e7f75840258889f188a42f15d9a3ce18acf37d7ba02b8ba8f14fba52c76f99691
    ssdeep: 768:X0IrC2dQdY3+xOF4/i/BEYkp7P6lweQDhDmpU5GFrrEzWsdSE0d8pUHIkI0IJa:XRAJxO+2G40OIkaJa
    type: PE32 executable (GUI) Intel 80386, for MS Windows

    Version Info:

    Translation: 0x0409 0x04b0
    InternalName: sszbtcDp
    FileVersion: 9.10
    CompanyName: sszbtcDp
    ProductName: sszbtcDp
    ProductVersion: 9.10
    OriginalFilename: sszbtcDp.exe

    Mal/Generic-R + Troj/Zbot-NY also known as:

    BkavW32.AlterEIP.PE
    K7AntiVirusTrojan ( 00133ee01 )
    LionicVirus.Win32.Murofet.li7L
    Elasticmalicious (high confidence)
    DrWebTrojan.Siggen.34201
    CynetMalicious (score: 100)
    CAT-QuickHealTrojan.Patched.AM
    ALYacTrojan.Patched.FI
    CylanceUnsafe
    ZillyaVirus.Starter.Win32.1
    SangforSuspicious.Win32.Save.a
    CrowdStrikewin/malicious_confidence_100% (D)
    AlibabaMalware:Win32/km_2f5b.None
    K7GWTrojan ( 00133ee01 )
    Cybereasonmalicious.721b54
    BaiduWin32.Worm.Autorun.z
    CyrenW32/Zbot.T.gen!Eldorado
    SymantecW32.Changeup
    ESET-NOD32Win32/TrojanDownloader.Small.OUC
    APEXMalicious
    AvastWin32:Zbodo [Inf]
    ClamAVWin.Trojan.VB-1207
    KasperskyTrojan.Win32.ZbotPatched.a
    BitDefenderTrojan.Patched.FI
    NANO-AntivirusVirus.Win32.Dlder.lbyd
    ViRobotWin32.PatchedZBot.A
    MicroWorld-eScanTrojan.Patched.FI
    TencentTrojan.Win32.Patched.k
    Ad-AwareTrojan.Patched.FI
    SophosMal/Generic-R + Troj/Zbot-NY
    ComodoTrojWare.Win32.Patched.O@1mj32s
    BitDefenderThetaAI:Packer.93B75C3C1F
    VIPREVirus.Win32.Zbot.a (v)
    TrendMicroPE_ZBOT.A
    McAfee-GW-EditionBehavesLike.Win32.VBObfus.lm
    FireEyeGeneric.mg.ef74895721b549a3
    EmsisoftTrojan.Patched.FI (B)
    SentinelOneStatic AI – Malicious PE
    JiangminTrojanDownloader.Genome.ghl
    AviraTR/Patched.ZB
    Antiy-AVLTrojan/Generic.ASCommon.F
    MicrosoftVirus:Win32/Zbot.A
    ArcabitTrojan.Patched.FI
    SUPERAntiSpywareTrojan.Agent/Gen-Vobfus
    ZoneAlarmTrojan.Win32.ZbotPatched.a
    GDataTrojan.Patched.FI
    TACHYONTrojan/W32.ZbotPatched.77824.B
    AhnLab-V3Win-Trojan/Patched.AE
    Acronissuspicious
    McAfeeVBObfus.b
    MAXmalware (ai score=100)
    VBA32Trojan.ZbotPatched
    PandaW32/Patched.L
    TrendMicro-HouseCallPE_ZBOT.A
    RisingWorm.Autorun!1.D162 (CLASSIC)
    YandexTrojan.GenAsa!BuQA6xuGzUk
    IkarusVirus.Worm
    MaxSecureVirus.W32.ZbotPatched.A
    FortinetW32/VBObfus.BDBD!tr
    AVGWin32:Zbodo [Inf]
    Paloaltogeneric.ml

    How to remove Mal/Generic-R + Troj/Zbot-NY?

    Mal/Generic-R + Troj/Zbot-NY removal tool
    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.

    About the author

    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Leave a Comment