Trojan

Trojan.Win32.Zenpak.bdhb removal tips

Malware Removal

The Trojan.Win32.Zenpak.bdhb is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Zenpak.bdhb virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Expresses interest in specific running processes
  • Unconventionial language used in binary resources: Polish
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Checks the CPU name from registry, possibly for anti-virtualization
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Trojan.Win32.Zenpak.bdhb?


File Info:

crc32: C702FF56
md5: 2cd4d38c13fd9f9ad98e4486155d8c3d
name: 2CD4D38C13FD9F9AD98E4486155D8C3D.mlw
sha1: f4db92f0c41393efd6d1c93f4eea963ae385f81d
sha256: 641aafba2584d0b07de1ea9138d07723c00cad438f5b149a4625b9925feeb425
sha512: 5f9c1e5280b920037bb3770509956087ebc7a453c01bcebfef1a59abf6205a6c89668335ba7bc82be33a1b81a4f43c9bb75bbed2d05362389bb47c66713ba65e
ssdeep: 98304:xdJtoE/6nKCf3Ci3Tj2v75s23lOMNDh1bSrSb3RdoDe61vnx1WtpzCHa/4zzQ6i:broCsfNoORr4NJeaAXBi1rj2t/
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

InternalSurname: vebug.ekzec
Prod: 1.2.5
FileVersions: 1.0.5.8
LegalCo: Copyri (C) 2019, permudationzy

Trojan.Win32.Zenpak.bdhb also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.36058896
FireEyeGeneric.mg.2cd4d38c13fd9f9a
McAfeeArtemis!2CD4D38C13FD
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Zenpak.4!c
SangforMalware
K7AntiVirusTrojan ( 00575ee91 )
BitDefenderTrojan.GenericKD.36058896
K7GWTrojan ( 00575ee91 )
Cybereasonmalicious.0c4139
CyrenW32/Kryptik.CXI.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Zenpak.bdhb
AlibabaBackdoor:Win32/Glupteba.ffa05dc8
ViRobotTrojan.Win32.Z.Zenpak.4437504
TencentWin32.Trojan.Kryptik.Hvjo
Ad-AwareTrojan.GenericKD.36058896
EmsisoftTrojan.GenericKD.36058896 (B)
ComodoMalware@#m1odyx4vsinx
F-SecureTrojan.TR/AD.GoCloudnet.whnqj
DrWebTrojan.PWS.Siggen2.61052
TrendMicroTROJ_GEN.F0CBC0UAJ21
McAfee-GW-EditionBehavesLike.Win32.Trojan.rc
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
WebrootW32.Trojan.Gen
AviraTR/AD.GoCloudnet.whnqj
Antiy-AVLGrayWare/Win32.Kryptik.hghw
MicrosoftTrojan:Win32/Glupteba.KMG!MTB
GridinsoftTrojan.Win32.Packed.oa
ArcabitTrojan.Generic.D2263710
ZoneAlarmTrojan.Win32.Zenpak.bdhb
GDataTrojan.GenericKD.36058896
AhnLab-V3Malware/Win32.RL_Generic.R362780
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34780.@pGfaq1IfTpG
ALYacTrojan.GenericKD.36058896
VBA32Trojan.Zenpak
MalwarebytesGeneric.Trojan.Malicious.DDS
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.HIQX
TrendMicro-HouseCallTROJ_GEN.F0CBC0UAJ21
RisingTrojan.Ransom.GlobeImposter!1.AF70 (TFE:5:bYXJg1YG3DR)
YandexTrojan.GenAsa!A3rOJaxYS2w
MAXmalware (ai score=81)
FortinetW32/Kryptik.HGHW!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_70% (W)
Qihoo-360Generic/HEUR/QVM11.1.7FA7.Malware.Gen

How to remove Trojan.Win32.Zenpak.bdhb?

Trojan.Win32.Zenpak.bdhb removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment