Trojan

Trojan:Win32/Aenjaris!pz malicious file

Malware Removal

The Trojan:Win32/Aenjaris!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Aenjaris!pz virus can do?

  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Uses Windows utilities to create a scheduled task
  • Deletes executed files from disk
  • Anomalous binary characteristics

How to determine Trojan:Win32/Aenjaris!pz?


File Info:

name: 3D6928CB092665B50CD7.mlw
path: /opt/CAPEv2/storage/binaries/d84407a535e337dcbc909cb998f013c446598503d83d47da10d24fd0698e1265
crc32: 83300EEB
md5: 3d6928cb092665b50cd7699c1b5cbdfd
sha1: f39bd3d1356bb8af93c90afde5ee1c7453ff5887
sha256: d84407a535e337dcbc909cb998f013c446598503d83d47da10d24fd0698e1265
sha512: 9838523c1b097755f99e35cdb02934778a194dd8babeac5820ec665c51b7db68b5c65d54b971a69cf842774fb7eb4e18a201a7c154fb37b9ce092f79d78b92f0
ssdeep: 6144:i3cuKOTqWSy3oosz4B5NkGkEjiPISUOgW9X+hOGzC/NM:VuKnzy4ohXNkGkmZzcukG2/
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10FA48D69BDA9D663E153013038EAF49057B9BC60F366C21B305CB2AC2273B5419BE77D
sha3_384: 5e0ea02503b294dd1ad1342409681878596df565f1b41cf5e28b9d771b33725d8f12638dd2e3c0239161f5f30d16e4bb
ep_bytes: 60b8000000008ab000104000c0cee6c0
timestamp: 2007-06-02 06:27:43

Version Info:

CompanyName: TODO:
FileDescription: TODO:
FileVersion: 1.0.0.1
InternalName: AdwTest.exe
LegalCopyright: TODO: (c) . All rights reserved.
OriginalFilename: AdwTest.exe
ProductName: TODO:
ProductVersion: 1.0.0.1
Translation: 0x0409 0x04e4

Trojan:Win32/Aenjaris!pz also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Ransom.Babuk.86
SkyhighBehavesLike.Win32.Generic.gm
McAfeeGenericRXOB-DF!3D6928CB0926
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Variant.Ransom.Babuk.86
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005ac2dd1 )
K7GWTrojan ( 004b494b1 )
CrowdStrikewin/malicious_confidence_100% (D)
ArcabitTrojan.Ransom.Babuk.86
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Agent.WTK
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Razy-9759519-0
KasperskyHEUR:Trojan.Win32.Nobady.pef
BitDefenderGen:Variant.Ransom.Babuk.86
NANO-AntivirusTrojan.Win32.Patched.foubml
AvastWin32:TrojanX-gen [Trj]
RisingTrojan.Agent!1.A728 (CLASSIC)
EmsisoftGen:Variant.Ransom.Babuk.86 (B)
F-SecureHeuristic.HEUR/AGEN.1365521
DrWebTrojan.MulDrop5.42246
ZillyaTrojan.AgentGen.Win32.95
FireEyeGeneric.mg.3d6928cb092665b5
SophosMal/Agent-AWE
SentinelOneStatic AI – Malicious PE
VaristW32/Agent.FRS.gen!Eldorado
AviraHEUR/AGEN.1365521
MAXmalware (ai score=83)
Antiy-AVLTrojan/Win32.Agent.wtk
Kingsoftmalware.kb.a.811
XcitiumTrojWare.Win32.Aenjaris.ABC@8hq1l4
MicrosoftTrojan:Win32/Aenjaris!pz
ZoneAlarmHEUR:Trojan.Win32.Nobady.pef
GDataWin32.Trojan.BadJoke.J
GoogleDetected
AhnLab-V3Malware/Win.Generic.C5393361
VBA32SScope.Malware-Cryptor.Aenjaris
ALYacGen:Variant.Ransom.Babuk.86
Cylanceunsafe
PandaTrj/Genetic.gen
TencentTrojan.Win32.Agent.zl
IkarusTrojan.Win32.Aenjaris
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.WTK!tr
BitDefenderThetaGen:NN.ZexaF.36744.Cu3@aqyzW2ki
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Trojan:Win32/Aenjaris!pz?

Trojan:Win32/Aenjaris!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment