Trojan

Trojan:Win32/Antavmu!pz removal instruction

Malware Removal

The Trojan:Win32/Antavmu!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Antavmu!pz virus can do?

  • Sample contains Overlay data
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan:Win32/Antavmu!pz?


File Info:

name: B48DD47EF28FC0CB511F.mlw
path: /opt/CAPEv2/storage/binaries/f5e152635e91678e4b3de29f8034e452c41cc2bd71443193e91b6032f2887ac6
crc32: FD40CB11
md5: b48dd47ef28fc0cb511fd7f85f64eaf3
sha1: 9a932d59f1424862503893777b92e522f31b8df3
sha256: f5e152635e91678e4b3de29f8034e452c41cc2bd71443193e91b6032f2887ac6
sha512: a0782907e8ff34f93fa268b8a32b6c91e943967b7000fa5c6527334a7509a21d2b1c5b452f4a3b4727e9dff2f8de42e02b1fcdbca589be6fc27931caf1fac6d1
ssdeep: 1536:zvr6eee2vqONy31OQA8AkqUhMb2nuy5wgIP0CSJ+5ycMyG1GWeRx5:zvuq/sGdqU7uy5w9WMycH5
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T15FB3A051B5F0D431E04484B3997D7E73EE3FFA600B476567A3D0A6649EE11A0AA0F32B
sha3_384: 632957efd3539eca8deaa8687277558b605db30407d6233acf88ea8f8a59640ce666ff220b4785552066f444936c62cc
ep_bytes: 00000000000000000000000000000000
timestamp: 2011-02-04 23:50:58

Version Info:

0: [No Data]

Trojan:Win32/Antavmu!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.KillFiles.tpMC
Elasticmalicious (high confidence)
FireEyeGeneric.mg.b48dd47ef28fc0cb
SkyhighBehavesLike.Win32.Generic.cm
Cylanceunsafe
SangforTrojan.Win32.Agent.Vm6c
AlibabaTrojan:Win32/Antavmu.db8aa28e
CrowdStrikewin/malicious_confidence_90% (W)
SymantecML.Attribute.HighConfidence
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Antavmu-9791257-0
AvastWin32:TrojanX-gen [Trj]
Trapminemalicious.moderate.ml.score
SophosML/PE-A
SentinelOneStatic AI – Malicious PE
VaristW32/Kryptik.LIG.gen!Eldorado
Antiy-AVLTrojan/Win32.Antavmu
Kingsoftmalware.kb.a.898
GridinsoftTrojan.Win32.Kryptik.sa
XcitiumTrojWare.Win32.KillFiles.NEH@4qfvz0
MicrosoftTrojan:Win32/Antavmu!pz
GDataWin32.Trojan.Agent.86Z91A
GoogleDetected
McAfeeArtemis!B48DD47EF28F
MalwarebytesGeneric.Malware.AI.DDS
TrendMicro-HouseCallTROJ_GEN.R03BH01A124
RisingTrojan.Generic@AI.100 (RDMK:tC49j5O6Qy6GRP9mWIkoXg)
IkarusTrojan.Win32.Antavmu
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Poison.BP!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Trojan:Win32/Antavmu!pz?

Trojan:Win32/Antavmu!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment