Trojan

Trojan.Win32.Zenpak.aiit removal instruction

Malware Removal

The Trojan.Win32.Zenpak.aiit is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Zenpak.aiit virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Win32.Zenpak.aiit?


File Info:

crc32: E05C48B9
md5: e2e59a887b9ac298bee6f06962d72bcb
name: tmpmd3y_16c
sha1: c71f37cb3e0136d59742571677f3430fc4977c01
sha256: b4f32ff1f6a1a6db2497781d64c19868972dbc35be7ff881b63771c96a87a054
sha512: 097c1083c571f399cfafd698a557141f3e5535a25cd912135420fce71dae78d20be49d6e66b1168cf40b2484c04ed4a3a0aee6761a42682cc9e0e1a87aa4ec4c
ssdeep: 6144:4QYmU2JFD8euKJ7lfJy7hcYrDZM8DY8gGTlj:4MU2z8NKJR8rDZM8D5
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 2009 Free Software Foundation
InternalName: tmef
FileVersion: 6.4.3.2395
License: This program is free software; you can redistribute it and/or modify it under the terms of the GNU General Public License; see www.gnu.org/copyleft/gpl.html.
CompanyName: GnuWin32
LegalTrademarks: GnuWin32xae, Grepxae, grepxae
WWW: http://www.gnu.org/software/grep/grep.html
ProductName: Tmef
ProductVersion: 6.4.3.2395
FileDescription: Grep: print lines matching a pattern
OriginalFilename: tmef.exe
Translation: 0x0409 0x04e4

Trojan.Win32.Zenpak.aiit also known as:

BkavHW32.Packed.
MicroWorld-eScanTrojan.GenericKD.34062139
FireEyeGeneric.mg.e2e59a887b9ac298
Qihoo-360Win32/Trojan.ffa
ALYacTrojan.GenericKD.34062139
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.34062139
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.b3e013
Invinceaheuristic
BitDefenderThetaGen:NN.ZexaF.34130.mu0@a4H9BGdi
CyrenW32/Kryptik.BOY.gen!Eldorado
SymantecPacked.Generic.553
ESET-NOD32Win64/Dridex.AY
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan.Win32.Zenpak.aiit
AlibabaTrojan:Win32/EmotetedCryptc.180910
AegisLabTrojan.Win32.Malicious.4!c
Ad-AwareTrojan.GenericKD.34062139
EmsisoftTrojan.GenericKD.34062139 (B)
TrendMicroTrojan.Win32.WACATAC.THFBDBO
Trapminemalicious.high.ml.score
SophosMal/Generic-S
SentinelOneDFI – Malicious PE
WebrootW32.Trojan.Gen
MAXmalware (ai score=87)
Antiy-AVLTrojan/Win32.Zenpak
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D207BF3B
ZoneAlarmTrojan.Win32.Zenpak.aiit
MicrosoftTrojan:Win32/Dridex.ARJ!MTB
CynetMalicious (score: 100)
Acronissuspicious
McAfeeGenericRXAA-AA!E2E59A887B9A
VBA32TScope.Malware-Cryptor.SB
MalwarebytesTrojan.Packed
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojan.Win32.WACATAC.THFBDBO
RisingTrojan.Zenpak!8.10372 (CLOUD)
YandexTrojan.Dridex!
IkarusTrojan.Win64.Dridex
GDataTrojan.GenericKD.34062139
AVGWin32:TrojanX-gen [Trj]
AvastWin32:TrojanX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Win32.Zenpak.aiit?

Trojan.Win32.Zenpak.aiit removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment