Trojan

Should I remove “TrojanDownloader:Win32/Zlob!CD”?

Malware Removal

The TrojanDownloader:Win32/Zlob!CD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Zlob!CD virus can do?

  • HTTPS urls from behavior.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

How to determine TrojanDownloader:Win32/Zlob!CD?


File Info:

name: 0A8A704E554FF0C9A209.mlw
path: /opt/CAPEv2/storage/binaries/168def401e5e6a7547fefce5ff71dc93e2e819b521142945c3131e63814201fa
crc32: 4158937A
md5: 0a8a704e554ff0c9a2097c737d96eef3
sha1: 7225a7931c9679017c988f9a413f990db668c685
sha256: 168def401e5e6a7547fefce5ff71dc93e2e819b521142945c3131e63814201fa
sha512: 576fcfb8a7cb9585bc33435c0fd9b7e696dcc4ae044e2bb76994c495fb74cf994e2e8c7ba47e7fc4547e4989f7c1a647633d946d559508b0bf05a6b3baaf139b
ssdeep: 768:LsqklSODu6/ZEXmV1z1dl1u1zqB1BYS0GiW1jbhTTGon9Gon3GonLqCxGtfS:Lnklhu6OXy1RdrUC1UGiW5tKtfS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18153F7093F578933E82259B0D99083F55FBE6C0336DA98AFEFA4264818D07C817776B4
sha3_384: ed4f30bea2609b38c1832c839d2f2baecfe75920c3545fcd0b55e595920933a9e633e774bfbfec8c96bcb65484408d23
ep_bytes: 558bec83e4f86aff688098400064a100
timestamp: 2008-07-24 08:22:50

Version Info:

0: [No Data]

TrojanDownloader:Win32/Zlob!CD also known as:

LionicTrojan.Win32.Zlob.kYRR
MicroWorld-eScanTrojan.Zlob.7.Gen
ClamAVWin.Trojan.Zlob-2203
FireEyeTrojan.Zlob.7.Gen
MalwarebytesGeneric.Malware/Suspicious
VIPRETrojan.Zlob.7.Gen
SangforTrojan.Win32.Zlob.gen
K7AntiVirusTrojan-Downloader ( 005354281 )
AlibabaTrojanDownloader:Win32/Zlobyp.2713467b
K7GWTrojan-Downloader ( 005354281 )
BitDefenderThetaGen:NN.ZexaF.36196.eqW@ae88c8mi
CyrenW32/Downloader.IAQM-7652
SymantecDownloader
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/TrojanDownloader.Zlob.CFI
APEXMalicious
CynetMalicious (score: 99)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Zlob.7.Gen
NANO-AntivirusTrojan.Win32.Popuper.xkvdr
SUPERAntiSpywareRogue.Dropper/Gen
AvastWin32:Zlob-CGW [Trj]
SophosTroj/Zlobyp-Gen
F-SecureTrojan.TR/Dldr.Zlob.Gen
DrWebTrojan.Popuper.21148
ZillyaDownloader.Zlob.Win32.29178
TrendMicroMal_Zlob-9
McAfee-GW-EditionPuper.bi
EmsisoftTrojan.Zlob.7.Gen (B)
IkarusTrojan-Downloader.Zlob
GDataTrojan.Zlob.7.Gen
JiangminTrojanDownloader.Generic.adzb
WebrootW32.Malware.Gen
AviraTR/Dldr.Zlob.Gen
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.AGeneric
XcitiumTrojWare.Win32.TrojanDownloader.Zlob.CIW0@1fd2go
ArcabitTrojan.Zlob.7.Gen
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojanDownloader:Win32/Zlob.gen!CD
GoogleDetected
AhnLab-V3Trojan/Win32.Zlob.C45389
McAfeePuper.bi
VBA32suspected of Trojan.Downloader.gen
Cylanceunsafe
PandaGeneric Malware
TrendMicro-HouseCallMal_Zlob-9
RisingDownloader.Zlob!8.B37 (TFE:4:iLB30ec56WF)
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/Zlob.EWB!tr
AVGWin32:Zlob-CGW [Trj]
DeepInstinctMALICIOUS

How to remove TrojanDownloader:Win32/Zlob!CD?

TrojanDownloader:Win32/Zlob!CD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment