Trojan

About “TrojanDropper:Win32/Floxif!pz” infection

Malware Removal

The TrojanDropper:Win32/Floxif!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDropper:Win32/Floxif!pz virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • CAPE detected the FloodFix malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine TrojanDropper:Win32/Floxif!pz?


File Info:

name: 0027B46A1325DD823192.mlw
path: /opt/CAPEv2/storage/binaries/8e4c9c45f54edc30f1d54f4b78584153a2ad37834bf43a6759929a6c0ae69c3f
crc32: CB0A5E1D
md5: 0027b46a1325dd823192136cf6ccefd7
sha1: ef50c787ef956cab44cc44a96ca9f5eebc2abc3d
sha256: 8e4c9c45f54edc30f1d54f4b78584153a2ad37834bf43a6759929a6c0ae69c3f
sha512: 03bcfc2e8dcede17745c46ae5350c90a6f6f1365a499469850b11c05bd534d41e4673d3b8754c968799584376e5cb955a8b00910b9127656d300e864a261a6ac
ssdeep: 3072:d6AviaOxXSvYq0MTgxr0l4kEsQvVqRlkM4OAD/KLznBuB2JA2BjKmG4t:d6COAYbM8E4kEsQvMRlkM4RD/qzMfU2K
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13304DF02F6D183FDD5125430309E7B2487F9EE3ECA6F5693EB40BD052D3E6624A2961B
sha3_384: 33eec7ed6f61dd7318a3b6f3ad93d80fdac9862c87d60be0d75cc437c331c4aa652eda111b732e7e815facb408b3653f
ep_bytes: e9d766000068801341006824bc400064
timestamp: 2003-08-29 00:40:24

Version Info:

0: [No Data]

TrojanDropper:Win32/Floxif!pz also known as:

BkavW32.VirusPacPaabccND.PE
LionicWorm.Win32.Luder.lGDS
ElasticWindows.Virus.Floxif
CynetMalicious (score: 100)
FireEyeGeneric.mg.0027b46a1325dd82
CAT-QuickHealW32.Pioneer.CZ1
SkyhighDropper-FIY!0027B46A1325
McAfeeDropper-FIY!0027B46A1325
Cylanceunsafe
VIPREWin32.Floxif.A
SangforSuspicious.Win32.Save.ins
K7AntiVirusVirus ( 00521e9a1 )
AlibabaVirus:Win32/Floxif.gen1
K7GWVirus ( 00521e9a1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaAI:FileInfector.207622A70E
VirITWin32.FloodFix.A
SymantecW32.Fixflo.B!inf
ESET-NOD32Win32/Floxif.H
APEXMalicious
ClamAVWin.Virus.Pioneer-7106169-0
KasperskyVirus.Win32.Pioneer.cz
BitDefenderWin32.Floxif.A
NANO-AntivirusVirus.Win32.Pioneer.bvrqhu
MicroWorld-eScanWin32.Floxif.A
AvastWin32:FloxLib-A [Trj]
TencentVirus.Win32.Pionner.tt
EmsisoftWin32.Floxif.A (B)
BaiduWin32.Virus.Floxif.a
F-SecureMalware.W32/Floxif.iici
DrWebWin32.FloodFix.7
ZillyaVirus.Floxif.Win32.1
TrendMicroPE_FLOXIF.D
SophosW32/Floxif-C
IkarusVirus.Win32.Floxif.A
GDataWin32.Virus.Floxif.A
JiangminWin32/Pioneer.l
VaristW32/Floxif.B
AviraW32/Floxif.iici
Antiy-AVLVirus/Win32.Pioneer.cz
KingsoftWin32.Pioneer.CZ.2433
XcitiumVirus.Win32.Floxif.A@7h5wha
ArcabitWin32.Floxif.A
ZoneAlarmVirus.Win32.Pioneer.cz
MicrosoftTrojanDropper:Win32/Floxif!pz
GoogleDetected
AhnLab-V3Win32/Fixflo.GEN
VBA32Virus.Pioneer.4109
ALYacWin32.Floxif.A
MAXmalware (ai score=82)
MalwarebytesGeneric.Malware.AI.DDS
PandaW32/Floxif.A
TrendMicro-HouseCallPE_FLOXIF.D
RisingVirus.Floxif!1.9BE6 (CLASSIC)
MaxSecureVirus.W32.Pioneer.CZ
FortinetW32/Floxif.E
AVGWin32:FloxLib-A [Trj]
Cybereasonmalicious.7ef956
DeepInstinctMALICIOUS

How to remove TrojanDropper:Win32/Floxif!pz?

TrojanDropper:Win32/Floxif!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment