Trojan

Trojan.PWS.ZKD removal tips

Malware Removal

The Trojan.PWS.ZKD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.PWS.ZKD virus can do?

  • Executable code extraction
  • A process attempted to delay the analysis task.
  • Deletes its original binary from disk
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Steals private information from local Internet browsers
  • Creates a hidden or system file
  • Creates a copy of itself
  • Harvests credentials from local FTP client softwares
  • Harvests information related to installed instant messenger clients
  • Harvests information related to installed mail clients
  • Collects information to fingerprint the system

Related domains:

z.whorecord.xyz
a.tomx.xyz
pyv.cl

How to determine Trojan.PWS.ZKD?


File Info:

crc32: 9BF51716
md5: 97ff613a5dbc64d460397a9907495afe
name: build.exe
sha1: 071cee784fa273cff7d914433c99358df1e4761b
sha256: 9dc3fd0d0c479cd635865756a9d9019c26532f51bd93845163a280b83aaaa63a
sha512: 729fa9a17bba4c9af1b4a462d60a0b18bfc0a7e91892099bc3047d8aeca50e646c8196f4209335663c29e38d94f3b7723333b2f0489a8f0a126712e5477aa672
ssdeep: 1536:czvQSZpGS4/31A6mQgL2eYCGDwRcMkVQd8YhY0/EqfIzmd:nSHIG6mQwGmfOQd8YhY0/EqUG
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.PWS.ZKD also known as:

BkavW32.TasumisCAK.Trojan
DrWebTrojan.PWS.Stealer.23680
MicroWorld-eScanTrojan.PWS.ZKD
FireEyeGeneric.mg.97ff613a5dbc64d4
CAT-QuickHealTrojan.Mauvaise.SL1
Qihoo-360HEUR/QVM20.1.7421.Malware.Gen
McAfeeGenericRXCL-KZ!97FF613A5DBC
CylanceUnsafe
K7AntiVirusPassword-Stealer ( 004d88671 )
BitDefenderTrojan.PWS.ZKD
K7GWPassword-Stealer ( 004d88671 )
Cybereasonmalicious.a5dbc6
TrendMicroTSPY_LOKI.SMA
BitDefenderThetaAI:Packer.59A658E51E
CyrenW32/Trojan.LAPN-1109
SymantecSMG.Heur!gen
APEXMalicious
AvastWin32:LokiBot-A [Trj]
ClamAVWin.Trojan.naKocTb-6331389-1
GDataTrojan.PWS.ZKD
KasperskyTrojan.Win32.Agentb.bvrg
NANO-AntivirusTrojan.Win32.Stealer.eshrhl
ViRobotTrojan.Win32.Agent.106496.HD
TencentMalware.Win32.Gencirc.10b3c757
Ad-AwareTrojan.PWS.ZKD
SophosTroj/Fareit-CHG
ComodoTrojWare.Win32.Fareit.LB@7pzcfo
F-SecureTrojan.TR/Crypt.XPACK.Gen
ZillyaTrojan.naKocTb.Win32.12
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
Trapminemalicious.high.ml.score
EmsisoftTrojan-PSW.Fareit (A)
IkarusTrojan-Spy.Primarypass
F-ProtW32/Trojan2.PBTA
JiangminTrojan.naKocTb.l
WebrootW32.Trojan.Gen
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.SGeneric
Endgamemalicious (high confidence)
ArcabitTrojan.PWS.ZKD
SUPERAntiSpywareTrojan.Agent/Gen-PasswordStealer
ZoneAlarmTrojan.Win32.Agentb.bvrg
MicrosoftPWS:Win32/Fareit.MS!MTB
TACHYONTrojan/W32.naKocTb.106496
AhnLab-V3Trojan/Win32.naKocTb.R270234
Acronissuspicious
ALYacTrojan.PWS.ZKD
MAXmalware (ai score=88)
VBA32BScope.Trojan.Agentb
MalwarebytesTrojan.PasswordStealer
PandaTrj/GdSda.A
ZonerTrojan.Win32.77501
ESET-NOD32Win32/PSW.Fareit.L
TrendMicro-HouseCallTSPY_LOKI.SMA
RisingTrojan.Lokibot!1.B343 (RDMK:cmRtazq8jIdyDMIvrIri9G6kaWnZ)
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Generic.AP.BA928!tr
AVGWin32:LokiBot-A [Trj]
CrowdStrikewin/malicious_confidence_100% (D)
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan.PWS.ZKD?

Trojan.PWS.ZKD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment