Trojan

Trojan:Win32/Antavmu!pz malicious file

Malware Removal

The Trojan:Win32/Antavmu!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Antavmu!pz virus can do?

  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan:Win32/Antavmu!pz?


File Info:

name: 1CEDDD5BCDA2C01420F2.mlw
path: /opt/CAPEv2/storage/binaries/0495d9b8054384dce9f0c7ab728b7a04f4782aa52d04143ec248f97880a6f654
crc32: 9C63663B
md5: 1ceddd5bcda2c01420f2919139a2aaaa
sha1: 9886739552e074a3327f50f46a22f0e0cda1976b
sha256: 0495d9b8054384dce9f0c7ab728b7a04f4782aa52d04143ec248f97880a6f654
sha512: 1ac1c0c96ce359d3d40d3a86075d86fb213385210e52b2d36998ffd6100e95c09e18b8be9a20c410298a2f8539ccb700a00a16c021b322f9105838dd07ef86f1
ssdeep: 1536:zvlhoiHiPFWDJOQA8AkqUhMb2nuy5wgIP0CSJ+5yCB8GMGlZ5G:zvVCd/GdqU7uy5w9WMyCN5G
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T11983AF52B9F0D430F05485B1897D7E73EE3EAE60074BA1679390E5648FF51A0AE0B36B
sha3_384: 0b79820dfa05721530f76b19690eb969a4886f5138785cbec5e70540153eb71232fe275e96b25a78e26bfd523d78715f
ep_bytes: eb1066623a432b2b484f4f4b90e92811
timestamp: 2011-02-04 23:50:58

Version Info:

0: [No Data]

Trojan:Win32/Antavmu!pz also known as:

BkavW32.AIDetectMalware
DrWebTrojan.MulDrop6.10374
MicroWorld-eScanGen:Trojan.FileInfector.eGW@aiJEZzn
FireEyeGeneric.mg.1ceddd5bcda2c014
CAT-QuickHealTrojan.AntavmuPMF.S19778283
SkyhighBehavesLike.Win32.Dropper.lh
McAfeeGenericRXHL-ZT!1CEDDD5BCDA2
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Trojan.FileInfector.eGW@aiJEZzn
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 001f4e2b1 )
BitDefenderGen:Trojan.FileInfector.eGW@aiJEZzn
K7GWTrojan ( 001f4e2b1 )
Cybereasonmalicious.552e07
BitDefenderThetaAI:Packer.ED5D5D581E
VirITTrojan.Win32.Generic.AFFA
SymantecTrojan.Dropper
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/KillFiles.NEH
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Antavmu-9791257-0
KasperskyTrojan.Win32.KillFiles.dobe
NANO-AntivirusTrojan.Win32.MlwGen.dglxhv
RisingTrojan.Win32.Antavmu.d (CLASSIC)
TACHYONTrojan/W32.Agent.81408.AAO
SophosMal/Antavmu-A
F-SecureTrojan.TR/Crypt.ZPACK.Gen7
ZillyaTrojan.KillFiles.Win32.29085
Trapminemalicious.moderate.ml.score
EmsisoftGen:Trojan.FileInfector.eGW@aiJEZzn (B)
IkarusTrojan.Win32.Antavmu
JiangminTrojanDownloader.NSIS.ff
WebrootW32.Infector
VaristW32/Antavmu.C.gen!Eldorado
AviraTR/Crypt.ZPACK.Gen7
Kingsoftmalware.kb.a.996
MicrosoftTrojan:Win32/Antavmu!pz
XcitiumTrojWare.Win32.KillFiles.NEH@4qfvz0
ArcabitTrojan.FileInfector.ECA2F2
SUPERAntiSpywareTrojan.Agent/Gen-Injector
ZoneAlarmTrojan.Win32.KillFiles.dobe
GDataGen:Trojan.FileInfector.eGW@aiJEZzn
GoogleDetected
AhnLab-V3Trojan/Win32.Antavmu.R25058
Acronissuspicious
VBA32TrojanDownloader.Adload
MAXmalware (ai score=89)
DeepInstinctMALICIOUS
Cylanceunsafe
PandaTrj/Genetic.gen
TencentTrojan.Win32.Killfiles.wa
YandexTrojan.GenAsa!mLg/yf6hjK0
SentinelOneStatic AI – Malicious PE
FortinetW32/Antavmu.JWS!tr
AVGWin32:TrojanX-gen [Trj]
AvastWin32:TrojanX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Antavmu!pz?

Trojan:Win32/Antavmu!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment