Trojan

Should I remove “Trojanspy.Zbot.8699”?

Malware Removal

The Trojanspy.Zbot.8699 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojanspy.Zbot.8699 virus can do?

  • Sample contains Overlay data
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojanspy.Zbot.8699?


File Info:

name: 0201D38D19F8F198CE86.mlw
path: /opt/CAPEv2/storage/binaries/b0111aff91841f1aec42ecab4a22e712568ee120c5c5b0cc14015be3e23a0dc2
crc32: 5B8F47FA
md5: 0201d38d19f8f198ce860f6522ed4016
sha1: 0c04ce1d426d2049d27498c3ace301af18642e90
sha256: b0111aff91841f1aec42ecab4a22e712568ee120c5c5b0cc14015be3e23a0dc2
sha512: 89f0a2870cea15d74b8499d91c4bc36ec9b468d742678d6532e741bf8de4ac1eadf47a5272fcd5d73cf1bcd9ac88d297c1088e05c21f81a0388f587594ac21a6
ssdeep: 1536:lPZr+gGIlhvWekHRu9ZVUhjZvVo8n5Cz3el7UW0wrRB0WBexH2R9DOaUsDY3fAhB:JZKgGKhuPdvVou5Rl7dR2W8XazcYPD
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E9C3E122F4D3D577E08240B68999CB449B167D1053B587C37AACB95EBF32AD05B3E382
sha3_384: cbfdfd165266e7333e234cfe8f8d876faf514b1abf44427c426c71ff89a19613dcf8a92ad3d4d4fb000670b0919b24c9
ep_bytes: 6a186868214100e839240000bf940000
timestamp: 2011-10-06 15:47:37

Version Info:

0: [No Data]

Trojanspy.Zbot.8699 also known as:

BkavW32.AIDetect.malware1
LionicHeuristic.File.Generic.00×1!p
Elasticmalicious (high confidence)
FireEyeGeneric.mg.0201d38d19f8f198
CAT-QuickHealTrojanspy.Zbot.8699
McAfeeArtemis!0201D38D19F8
ZillyaTrojan.Zbot.Win32.43983
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 0055dd191 )
K7GWTrojan ( 0055dd191 )
CrowdStrikewin/malicious_confidence_100% (W)
VirITTrojan.Win32.Zyx.EU
TrendMicro-HouseCallTROJ_KRYPT.SMGS
ClamAVWin.Trojan.Zbot-20325
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.Zbot.dqbsuj
CynetMalicious (score: 100)
APEXMalicious
TencentMalware.Win32.Gencirc.114963bf
ComodoMalware@#28yol6qu64u2q
TrendMicroTROJ_KRYPT.SMGS
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
Trapminemalicious.high.ml.score
SophosML/PE-A + Mal/EncPk-ABL
IkarusTrojan-Spy.Win32.Zbot
JiangminTrojanSpy.Zbot.bfss
WebrootW32.Malware.Gen
Antiy-AVLTrojan/Generic.ASMalwS.31
ViRobotTrojan.Win32.A.Zbot.133632.T
MicrosoftPWS:Win32/Zbot
GoogleDetected
Acronissuspicious
VBA32TrojanSpy.Zbot
RisingSpyware.Zbot!8.16B (TFE:5:xi1LFqkFHCN)
SentinelOneStatic AI – Malicious PE
FortinetW32/Kryptik.UWX!tr
Cybereasonmalicious.d426d2
PandaTrj/Genetic.gen

How to remove Trojanspy.Zbot.8699?

Trojanspy.Zbot.8699 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment