Trojan

TrojanDownloader:Win32/Vundo.HIZ removal guide

Malware Removal

The TrojanDownloader:Win32/Vundo.HIZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Vundo.HIZ virus can do?

  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine TrojanDownloader:Win32/Vundo.HIZ?


File Info:

name: AB8AE023F1B19661B312.mlw
path: /opt/CAPEv2/storage/binaries/15aaf7c7e6f7207bd9ea3e50512382d8003bdbf2dceeb05e230587b1216a7626
crc32: 996236AD
md5: ab8ae023f1b19661b31227588b76e3d4
sha1: fd11f319b0c0efd8688a740a48f12f2d53d239a4
sha256: 15aaf7c7e6f7207bd9ea3e50512382d8003bdbf2dceeb05e230587b1216a7626
sha512: 289809c79b2d72da7bdcb7d87d275d9ddd547af39e95bb7015b18c67bc01b403118e5b59979de11d3e5df04e9c8a28d09e4ef99cbc7f1f4aa3e2ffa5a6428aab
ssdeep: 1536:9fIzwhA0lHzDYalrG6LAcbXdx5yxskrnaX2ZtLdM7otd:9fIUAeL0oljH5iraStLG7ot
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16CA3CF5774ECE427C25883718D7A0F991B5BFA026360AB839756A55FAE303A02F1F7C4
sha3_384: 764a2ccc8fc4743ffa0194178cbd3e09f9308b41e14c5e5b37f24e2ce3026e5732b079e01376738777f5d31da3a41d91
ep_bytes: 558bec6aff681021010168e805010164
timestamp: 2011-11-25 07:09:43

Version Info:

0: [No Data]

TrojanDownloader:Win32/Vundo.HIZ also known as:

BkavW32.AIDetectMalware
DrWebTrojan.Mayachok.1
MicroWorld-eScanTrojan.Vundo.GTW
FireEyeGeneric.mg.ab8ae023f1b19661
CAT-QuickHealTrojan.Vundo.Gen
SkyhighBehavesLike.Win32.Vundo.ch
McAfeeVundo.gen.ei
MalwarebytesMachineLearning/Anomalous.100%
ZillyaDropper.Cidox.Win32.5112
SangforSuspicious.Win32.Save.ins
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojanDownloader:Win32/Cidox.2d9fcea6
K7GWTrojan ( 0032415c1 )
K7AntiVirusTrojan ( 0032415c1 )
BitDefenderThetaAI:Packer.CA5EA3DB21
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32Win32/Agent.SFM
APEXMalicious
TrendMicro-HouseCallTROJ_GEN.F1FEZLC
ClamAVWin.Dropper.Agent-36337
KasperskyTrojan-Dropper.Win32.Cidox.igx
BitDefenderTrojan.Vundo.GTW
NANO-AntivirusTrojan.Win32.Cidox.geqtq
AvastWin32:Cidox-I [Drp]
TencentWin32.Trojan-Dropper.Cidox.Ljgl
EmsisoftTrojan.Vundo.GTW (B)
F-SecureTrojan.TR/Drop.Cidox.ihcb
VIPRETrojan.Vundo.GTW
TrendMicroTROJ_GEN.F1FEZLC
Trapminemalicious.high.ml.score
SophosTroj/Virtum-Gen
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=100)
JiangminTrojanDropper.Cidox.eok
GoogleDetected
AviraTR/Drop.Cidox.ihcb
VaristW32/Lampa.A.gen!Eldorado
Antiy-AVLTrojan[Dropper]/Win32.Cidox
Kingsoftmalware.kb.a.1000
MicrosoftTrojanDownloader:Win32/Vundo.HIZ
XcitiumTrojWare.Win32.Cidox.AEX@4kw0re
ArcabitTrojan.Vundo.GTW
ViRobotDropper.Cidox.Gen.A
ZoneAlarmTrojan-Dropper.Win32.Cidox.igx
GDataTrojan.Vundo.GTW
CynetMalicious (score: 99)
AhnLab-V3Dropper/Win32.Cidox.R16379
VBA32TrojanDropper.Cidox
ALYacTrojan.Vundo.GTW
Cylanceunsafe
PandaTrj/Genetic.gen
RisingBackdoor.Win32.Undef.thb (CLASSIC)
YandexTrojan.GenAsa!XowbzsIQRmE
IkarusTrojan-Dropper.Win32.Cidox
MaxSecureTrojan.Malware.3333031.susgen
FortinetW32/Cidox.IRM!tr
AVGWin32:Cidox-I [Drp]
DeepInstinctMALICIOUS
alibabacloudBackdoor

How to remove TrojanDownloader:Win32/Vundo.HIZ?

TrojanDownloader:Win32/Vundo.HIZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment