Spy Trojan

About “Trojan.Spy.Banker.ZLM” infection

Malware Removal

The Trojan.Spy.Banker.ZLM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Spy.Banker.ZLM virus can do?

  • Executable code extraction
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Spy.Banker.ZLM?


File Info:

crc32: E29B1A9D
md5: 7783048ff714c8de19348f1efbe20768
name: 7783048FF714C8DE19348F1EFBE20768.mlw
sha1: 1dcf98d292e65cdcddf2028cd6311224fa6b0f0d
sha256: 9ede035701d4053633c48e22a59d2dd19a9e7a337a06f7bcf966726a9fffdd79
sha512: 16d236c2620feddf03c07352ef729ca72a660d30dbf960590942da0f6f57c2a2e1abd16315a8acdedf6c4bdba45d9a98427e6a11b27f9c2e891340dec0f1856c
ssdeep: 12288:6JcaoWAzv69iOYgciWDGn5Md7FDABJcaoWAzv69iOYgciWDG9JcaoWAzv69iOYg:7Gn5MHZGaG
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: abas
InternalName: 6
FileVersion: 1.00
CompanyName: abas
LegalTrademarks: abas
ProductName: abas
ProductVersion: 1.00
FileDescription: abas
OriginalFilename: 6.exe

Trojan.Spy.Banker.ZLM also known as:

BkavW32.AIDetect.malware2
K7AntiVirusRiskware ( 0040eff71 )
DrWebTrojan.PWS.Bancos.6854
ClamAVWin.Keylogger.Bancos-7367889-0
McAfeeArtemis!7783048FF714
CylanceUnsafe
SangforTrojan.Win32.Save.a
AlibabaTrojanBanker:Win32/Bancos.3f2720f3
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.ff714c
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 99)
KasperskyTrojan-Banker.Win32.Bancos.abw
BitDefenderTrojan.Spy.Banker.ZLM
NANO-AntivirusTrojan.Win32.Bancos.yehe
MicroWorld-eScanTrojan.Spy.Banker.ZLM
TencentWin32.Trojan-banker.Bancos.Aiid
Ad-AwareTrojan.Spy.Banker.ZLM
SophosMal/VBBanc-A
BitDefenderThetaAI:Packer.3E0DC15020
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.VirRansom.tm
FireEyeGeneric.mg.7783048ff714c8de
EmsisoftTrojan.Spy.Banker.ZLM (B)
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1115314
eGambitGeneric.PSW
KingsoftWin32.Troj.Banker.(kcloud)
MicrosoftTrojanSpy:Win32/Banker
ArcabitTrojan.Spy.Banker.ZLM
AegisLabTrojan.Win32.Bancos.7!c
GDataTrojan.Spy.Banker.ZLM
TACHYONBanker/W32.Bancos.1867776
AhnLab-V3Trojan/Win32.Bancos.C759423
VBA32TrojanBanker.Bancos
MAXmalware (ai score=99)
PandaTrj/Genetic.gen
RisingMalware.Undefined!8.C (CLOUD)
YandexTrojan.GenAsa!NunCGqBALSU
IkarusTrojan-Spy.Win32.Bancos.abw
FortinetW32/Bancos.A!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Spy.Banker.ZLM?

Trojan.Spy.Banker.ZLM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment