Trojan

Trojan.Win32.Zenpak.xox removal tips

Malware Removal

The Trojan.Win32.Zenpak.xox is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Zenpak.xox virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • A process created a hidden window
  • Unconventionial language used in binary resources: Hindi
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Deletes its original binary from disk
  • Anomalous binary characteristics
  • Uses suspicious command line tools or Windows utilities

Related domains:

pokemonfans.best

How to determine Trojan.Win32.Zenpak.xox?


File Info:

crc32: C40D2291
md5: a0e8371efd74e4c0ec61edfc88dceb0a
name: some2403n_soft_10cr10.exe
sha1: 8316c62f042a2bfe089901903e87fda36c1048eb
sha256: bd46145f58aa75b0c7167b0d41f5e8391bb739e5fc310c5d1555f47f9d4e752b
sha512: be6bf55c5b52935ec483e2027cb0229dbb587f40253de0be075d9ea0e4e23a7fc831afbf1c37e0773bebabaf130ecc40bbc8ccf7b66170224b3a1ef7c57b4178
ssdeep: 3072:7G9iMGFB9LDNAt2pHs6vtKDJrmJ/bGXb87rRh8bTE0V0BNorz5Wri9FgB:7G9iMGX9NpHsT1rmE87rRJ0VMzm3g
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

FileVersionNew: 2.3.4
InternalServiceName: speedy.exe
Copyright: Copyright (C) 2020, softtail
ProgramVersion: 1.4.7

Trojan.Win32.Zenpak.xox also known as:

BkavW32.AIDetectVM.malware
MicroWorld-eScanTrojan.GenericKD.42893079
FireEyeGeneric.mg.a0e8371efd74e4c0
Qihoo-360Win32/Trojan.3fe
McAfeeArtemis!A0E8371EFD74
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 0056362c1 )
BitDefenderTrojan.GenericKD.42893079
K7GWTrojan ( 0056362c1 )
Cybereasonmalicious.f042a2
TrendMicroTROJ_GEN.R011C0DCR20
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:CoinminerX-gen [Trj]
GDataTrojan.GenericKD.42893079
KasperskyTrojan.Win32.Zenpak.xox
AlibabaBackdoor:Win32/Glupteba.a18cfaf1
AegisLabTrojan.Win32.Zenpak.4!c
RisingTrojan.Kryptik!8.8 (CLOUD)
Ad-AwareTrojan.GenericKD.42893079
SophosMal/RyPack-A
F-SecureTrojan.TR/AD.Khalesi.fvfwf
DrWebTrojan.PWS.Steam.17932
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.PUPXCT.cc
Trapminesuspicious.low.ml.score
EmsisoftTrojan.GenericKD.42893079 (B)
IkarusTrojan.Win32.Crypt
CyrenW32/Trojan.ZWVM-5736
JiangminTrojanSpy.Zbot.fqvq
AviraTR/AD.Khalesi.fvfwf
Antiy-AVLTrojan/Win32.Zenpak
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D28E7F17
ZoneAlarmTrojan.Win32.Zenpak.xox
MicrosoftPWS:Win32/Predator.KM!MTB
AhnLab-V3Trojan/Win32.MalPe.R330043
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34104.mqW@aqnkPNpG
ALYacTrojan.GenericKD.42893079
MAXmalware (ai score=99)
MalwarebytesTrojan.Glupteba
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.HCGS
TrendMicro-HouseCallTROJ_GEN.R011C0DCR20
TencentWin32.Trojan.Zenpak.Lmui
SentinelOneDFI – Malicious PE
FortinetW32/RyPack.A!tr
AVGWin32:CoinminerX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan.Win32.Zenpak.xox?

Trojan.Win32.Zenpak.xox removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment