Trojan

About “Trojan.Win32.Zenpak.ahul” infection

Malware Removal

The Trojan.Win32.Zenpak.ahul is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Zenpak.ahul virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Anomalous binary characteristics

How to determine Trojan.Win32.Zenpak.ahul?


File Info:

crc32: E77F3467
md5: c37154f2017e2c9c6f32195b466ed8da
name: 494o4dnao4z9a.exe
sha1: 6db2e666edaac0a756ab15b67b11eb3018293407
sha256: 52378e65bd61d53f5036cf158bdc96eb3c0109b2231689f30909d25a0642d23f
sha512: 295e62107e9deca06262d109883f047d4e67e925f5e5645fbf365e7c094804c3d3967960633084a26d4fc6dcb0764a515d2c583028ca4f47d4b27d01a35846e3
ssdeep: 6144:zVlUNAsZfASdqokQSPHVKR+MMte5bm40R9CwvA+BPmgqGul4Nff3wjhXU:JGXAqviHAR6tOa40LC2APGaqojBU
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Win32.Zenpak.ahul also known as:

BkavW32.AIDetectVM.malware1
MicroWorld-eScanGen:Variant.Zusy.307021
FireEyeGeneric.mg.c37154f2017e2c9c
CAT-QuickHealTrojan.IGENERIC
McAfeeGenericRXLC-KF!C37154F2017E
MalwarebytesTrojan.Agent
ZillyaTrojan.Zenpak.Win32.2244
K7AntiVirusTrojan ( 0056929f1 )
BitDefenderGen:Variant.Zusy.307021
K7GWTrojan ( 0056929f1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZexaF.34130.wqX@aOqp8Oki
APEXMalicious
AvastWin32:Malware-gen
GDataGen:Variant.Zusy.307021
KasperskyTrojan.Win32.Zenpak.ahul
NANO-AntivirusTrojan.Win32.Zusy.hljhsj
RisingMalware.Heuristic!ET#76% (RDMK:cmRtazp+a7zuwR+iRCCv43ennnZR)
Ad-AwareGen:Variant.Zusy.307021
F-SecureTrojan.TR/AD.TrickBot.lwxjf
DrWebTrojan.Packed.140
VIPRETrojan.Win32.Generic!BT
Trapminesuspicious.low.ml.score
EmsisoftGen:Variant.Zusy.307021 (B)
JiangminTrojan.Zenpak.cgd
AviraTR/AD.TrickBot.lwxjf
MAXmalware (ai score=84)
Antiy-AVLTrojan/Win32.Wacatac
Endgamemalicious (high confidence)
ArcabitTrojan.Zusy.D4AF4D
ZoneAlarmTrojan.Win32.Zenpak.ahul
MicrosoftTrojan:Win32/Wacatac.C!ml
CynetMalicious (score: 90)
AhnLab-V3Trojan/Win32.Trickbot.R341105
VBA32BScope.Trojan.Zenpak
ALYacGen:Variant.Zusy.307021
ESET-NOD32a variant of Generik.BQOZDVS
TencentMalware.Win32.Gencirc.10cdd7da
YandexTrojan.Agent!22ldsDn0eoI
SentinelOneDFI – Malicious PE
FortinetW32/GenKryptik.EKAX!tr
AVGWin32:Malware-gen
Cybereasonmalicious.6edaac

How to remove Trojan.Win32.Zenpak.ahul?

Trojan.Win32.Zenpak.ahul removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment