Trojan

What is “Trojan.Win32.Zenpak.bbwv”?

Malware Removal

The Trojan.Win32.Zenpak.bbwv is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Zenpak.bbwv virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Unconventionial language used in binary resources: Ukrainian
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Win32.Zenpak.bbwv?


File Info:

crc32: B51066EC
md5: 2a46597aa728d42804d53d4435666ea7
name: 2A46597AA728D42804D53D4435666EA7.mlw
sha1: 857a6b6e9627fdbbcb2718b060268752af20ca9b
sha256: 60078263a71021f5848a2971bf4fae48811c1ed54cfc0cf4a49f7168ed12b7a4
sha512: a6cf5781a56c7e37464ae76537e4fc4224bf8896d6202b03a1681a4b59ba9033cb92d075f033074bb6a835c0f043ecc71450fa262900621b8b6695174774aa5f
ssdeep: 98304:3jRhRlYsYrwOogrKotPd5WVYHAoNuI99gxWUB04L8OQvG+DSsrHTCGaltLnDY+O:3jRfToQ4+nwOcSsKDFnWOzUjP0VGF9e
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

InternalSurname: debaukd.ekze
Prod: 1.2.7
FileVersions: 1.0.5.6
LegalCo: Copyri (C) 2019, permudationz

Trojan.Win32.Zenpak.bbwv also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.45224680
FireEyeGeneric.mg.2a46597aa728d428
ALYacTrojan.GenericKD.45224680
MalwarebytesTrojan.MalPack.GS
AegisLabTrojan.Win32.Zenpak.4!c
K7AntiVirusTrojan ( 0057560d1 )
BitDefenderTrojan.GenericKD.45224680
K7GWTrojan ( 0057560d1 )
CrowdStrikewin/malicious_confidence_100% (D)
CyrenW32/Kryptik.CVF.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
KasperskyTrojan.Win32.Zenpak.bbwv
AlibabaBackdoor:Win32/Zenpack.e24df262
Ad-AwareTrojan.GenericKD.45224680
EmsisoftTrojan.GenericKD.45224680 (B)
ComodoMalware@#21odce28x7kdv
F-SecureTrojan.TR/AD.GoCloudnet.cuu
DrWebTrojan.SpyBot.1036
McAfee-GW-EditionBehavesLike.Win32.Generic.rc
SophosMal/Generic-S
WebrootW32.Trojan.Gen
AviraTR/AD.GoCloudnet.cuu
KingsoftWin32.Troj.Zenpak.bb.(kcloud)
GridinsoftTrojan.Win32.Packed.vb
ArcabitTrojan.Generic.D2B212E8
ZoneAlarmTrojan.Win32.Zenpak.bbwv
GDataTrojan.GenericKD.45224680
CynetMalicious (score: 100)
Acronissuspicious
McAfeeArtemis!2A46597AA728
MAXmalware (ai score=89)
PandaTrj/RnkBend.A
ESET-NOD32a variant of Win32/Kryptik.HILR
TencentWin32.Trojan.Zenpak.Hrfi
SentinelOneStatic AI – Suspicious PE
FortinetW32/Kryptik.HIKX!tr
BitDefenderThetaGen:NN.ZexaF.34700.@pGfayRP7Uec
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.e9627f
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.8be

How to remove Trojan.Win32.Zenpak.bbwv?

Trojan.Win32.Zenpak.bbwv removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment