Trojan

Trojan:Win32/Antavmu!pz removal tips

Malware Removal

The Trojan:Win32/Antavmu!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Antavmu!pz virus can do?

  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan:Win32/Antavmu!pz?


File Info:

name: 21A64F435DEADA48CAB7.mlw
path: /opt/CAPEv2/storage/binaries/9532b515b6f8abe6ff746efbadac23764ec5f6d8d278b47cd7f08fb2f926d71d
crc32: 2B097FC6
md5: 21a64f435deada48cab7992846219f74
sha1: 5c0d20b3b633cd6e17526a7a76517b8477869468
sha256: 9532b515b6f8abe6ff746efbadac23764ec5f6d8d278b47cd7f08fb2f926d71d
sha512: 500951330f3f47b965618ea9ef248335b99b4ea0e5572e481a9790600e745437a4c54ddd9d9cc2cb611013986cae6d1e4768add4a19d2cf1f823ff7be27d701b
ssdeep: 1536:hbUkvV2uWK5QPqfhVWbdsmA+RjPFLC+e5ho0ZGUGf2g:hxv+NPqfcxA+HFshoOg
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1D773AF21B9D1C031F04485B2593D6E73FE3EEA540A9792F79B94F5A4CEF41D09A0A32B
sha3_384: 7b674a2d22e97754f16f4dc8edbaecf46e15e79137cabc6e2520b49ebd55d5dac19517c26d54b508a0bd7a5bf2052c41
ep_bytes: a11bf14000c1e002a31ff14000526a00
timestamp: 2011-01-11 01:44:56

Version Info:

0: [No Data]

Trojan:Win32/Antavmu!pz also known as:

BkavW32.AIDetectMalware
LionicVirus.DOS.Moctezuma.tnBC
MicroWorld-eScanGen:Trojan.FileInfector.eGW@aKDb32o
FireEyeGeneric.mg.21a64f435deada48
CAT-QuickHealTrojan.AntavmuPMF.S31541431
SkyhighBehavesLike.Win32.Dropper.lh
McAfeePWS-OnlineGames.kz
Cylanceunsafe
ZillyaTrojan.KillFiles.Win32.38737
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 001f4e2b1 )
AlibabaMalware:Win32/km_2242df.None
K7GWTrojan ( 001f4e2b1 )
Cybereasonmalicious.3b633c
ArcabitTrojan.FileInfector.EC4F1B
BitDefenderThetaAI:Packer.2D4DD5B71E
VirITTrojan.Win32.Generic.ABFQ
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/KillFiles.NEH
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Poison-10016370-0
KasperskyUDS:Trojan.Win32.Generic
BitDefenderGen:Trojan.FileInfector.eGW@aKDb32o
NANO-AntivirusTrojan.Win32.Antavmu.dhwgp
AvastWin32:TrojanX-gen [Trj]
TencentTrojan.Win32.Agent.mgr
TACHYONTrojan/W32.Antavmu.74752.E
EmsisoftGen:Trojan.FileInfector.eGW@aKDb32o (B)
F-SecureTrojan.TR/Antavmu.doena
DrWebTrojan.Siggen8.42052
VIPREGen:Trojan.FileInfector.eGW@aKDb32o
TrendMicroTROJ_GEN.R002C0DLV23
Trapminemalicious.high.ml.score
SophosMal/Antavmu-A
IkarusTrojan.Antavmu
JiangminTrojan.Generic.hrpwg
VaristW32/Antavmu.D.gen!Eldorado
AviraTR/Antavmu.doena
Antiy-AVLTrojan/Win32.KillFiles
Kingsoftmalware.kb.a.995
XcitiumTrojWare.Win32.KillFiles.NEH@4qfvz0
MicrosoftTrojan:Win32/Antavmu!pz
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Trojan.FileInfector.eGW@aKDb32o
GoogleDetected
AhnLab-V3Trojan/Win32.Antavmu.R25058
VBA32BScope.Trojan.Downloader
ALYacGen:Trojan.FileInfector.eGW@aKDb32o
MAXmalware (ai score=86)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DLV23
RisingTrojan.Win32.Antavmu.b (CLASSIC)
YandexTrojan.GenAsa!mLg/yf6hjK0
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.3411146.susgen
FortinetW32/KillFiles.NEH!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Antavmu!pz?

Trojan:Win32/Antavmu!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment