Trojan

What is “Trojan.Win32.Zonidel.fmj”?

Malware Removal

The Trojan.Win32.Zonidel.fmj is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Zonidel.fmj virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Possible date expiration check, exits too soon after checking local time
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Trojan.Win32.Zonidel.fmj?


File Info:

name: 7AC03EC3CB7C53032CD0.mlw
path: /opt/CAPEv2/storage/binaries/582cb5bbfbf9444f932371d18a3ac3578375ae5bccdfc2e24e7d173042c3ff84
crc32: 27C0181B
md5: 7ac03ec3cb7c53032cd0eda37eb27fbd
sha1: 301a9e12239d4d80bafc2a36b825c307e83e5f17
sha256: 582cb5bbfbf9444f932371d18a3ac3578375ae5bccdfc2e24e7d173042c3ff84
sha512: f33d1a26a1da469de87d86672c7633e9402d2c5368da594108ff6e4951f0ac6dcbf46901786431be25539dd40ff8d0ebb65f56ddd822b29a0535c66347848776
ssdeep: 24576:si2yv2i3XKjmo2yVsP3TzCrU2l94ObRzUUCHURm4YmZaUxOXgrvGcytxUKywmMq4:n2ySrecEGMw0
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T13565B64BFBB610D1F5BAC2399452322AFC7274A5873897D792459A0E4B30FE8AD3D740
sha3_384: f602288217e8e66a8e680cc76e7766e43983bc96f49dd6de1c18b563e0371fb60ee93123fb50c717fd286aef67921e35
ep_bytes: e9fbde0000e906a00000e911db0900e9
timestamp: 2021-12-01 11:21:36

Version Info:

0: [No Data]

Trojan.Win32.Zonidel.fmj also known as:

MicroWorld-eScanTrojan.GenericKD.38176234
FireEyeGeneric.mg.7ac03ec3cb7c5303
ALYacTrojan.GenericKD.38176234
AlibabaTrojan:Win32/Zonidel.12b9fccc
ArcabitTrojan.Generic.D24685EA
SymantecTrojan.Gen.MBT
TrendMicro-HouseCallTROJ_GEN.R002C0WL621
KasperskyTrojan.Win32.Zonidel.fmj
BitDefenderTrojan.GenericKD.38176234
AvastWin64:Malware-gen
Ad-AwareTrojan.GenericKD.38176234
EmsisoftTrojan.GenericKD.38176234 (B)
TrendMicroTROJ_GEN.R002C0WL621
McAfee-GW-EditionBehavesLike.Win64.Generic.tm
MaxSecureTrojan.Malware.300983.susgen
AviraTR/Zonidel.wibti
MAXmalware (ai score=84)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataTrojan.GenericKD.38176234
CynetMalicious (score: 100)
McAfeeArtemis!7AC03EC3CB7C
IkarusTrojan.Zonidel
FortinetPossibleThreat.MU
AVGWin64:Malware-gen
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Trojan.Win32.Zonidel.fmj?

Trojan.Win32.Zonidel.fmj removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment