Trojan

What is “Trojan:Win32/Antavmu!pz”?

Malware Removal

The Trojan:Win32/Antavmu!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Antavmu!pz virus can do?

  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan:Win32/Antavmu!pz?


File Info:

name: FCE014C180D7E29E92BA.mlw
path: /opt/CAPEv2/storage/binaries/8be55fbaf4148afa548e9eb0ea4a00f8d2e83d619f69b089e9c2f29f0747f13f
crc32: 164DED97
md5: fce014c180d7e29e92ba07001de04ce2
sha1: 23700d428247be9e34e63a8c053ad8526fb565e6
sha256: 8be55fbaf4148afa548e9eb0ea4a00f8d2e83d619f69b089e9c2f29f0747f13f
sha512: 80c753b71ac6a599b2e561083b54ddb164a6edaf2220abdfc38785bc03c6c02a42c52dc00d3ffbabe7a4e7df44a86e18e7048bc4961177b9e763045c5cacc800
ssdeep: 1536:hbA/i55AjeK5QPqfhVWbdsmA+RjPFLC+e5hoA0ZGUGf2g:hk01NPqfcxA+HFshROg
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T12B739E22B9D0C434F04485B25D3D6973BE7EAA640B5793E79BD0F5A4CEE4190EA0B31B
sha3_384: cea53f2107bc230fc1c980d9a30a3f8e3b4f99810ce5ecc906d826e20215aa0a5f15bf7ea8bc8d962ae084a0f221120a
ep_bytes: a11bf14000c1e002a31ff14000526a00
timestamp: 2011-01-11 01:44:56

Version Info:

0: [No Data]

Trojan:Win32/Antavmu!pz also known as:

BkavW32.AIDetectMalware
LionicVirus.DOS.Moctezuma.tnBC
MicroWorld-eScanGen:Trojan.FileInfector.eGW@aKDb32o
FireEyeGeneric.mg.fce014c180d7e29e
CAT-QuickHealTrojan.AntavmuPMF.S31541431
SkyhighBehavesLike.Win32.Dropper.lh
McAfeePWS-OnlineGames.kz
Cylanceunsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaMalware:Win32/km_2242df.None
K7GWTrojan ( 001f4e2b1 )
K7AntiVirusTrojan ( 001f4e2b1 )
VirITTrojan.Win32.Generic.ABFQ
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/KillFiles.NEH
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Poison-10016370-0
KasperskyUDS:Trojan.Win32.Generic
BitDefenderGen:Trojan.FileInfector.eGW@aKDb32o
NANO-AntivirusTrojan.Win32.Antavmu.dhwgp
AvastWin32:TrojanX-gen [Trj]
TencentTrojan.Win32.Agent.mgr
TACHYONTrojan/W32.Antavmu.74752.E
SophosMal/Antavmu-A
F-SecureTrojan.TR/Antavmu.doena
DrWebTrojan.Siggen8.42052
VIPREGen:Trojan.FileInfector.eGW@aKDb32o
TrendMicroTROJ_GEN.R002C0DA324
EmsisoftGen:Trojan.FileInfector.eGW@aKDb32o (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Trojan.FileInfector.eGW@aKDb32o
JiangminTrojan.Generic.hrpwg
VaristW32/Antavmu.D.gen!Eldorado
AviraTR/Antavmu.doena
Antiy-AVLTrojan/Win32.KillFiles
Kingsoftmalware.kb.a.995
XcitiumTrojWare.Win32.KillFiles.NEH@4qfvz0
ArcabitTrojan.FileInfector.EC4F1B
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Antavmu!pz
GoogleDetected
AhnLab-V3Trojan/Win32.Antavmu.R25058
BitDefenderThetaAI:Packer.2D4DD5B71E
MAXmalware (ai score=86)
VBA32BScope.Trojan.Downloader
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DA324
RisingTrojan.Win32.Antavmu.b (CLASSIC)
YandexTrojan.GenAsa!mLg/yf6hjK0
IkarusTrojan.Antavmu
MaxSecureTrojan.Malware.3411146.susgen
FortinetW32/KillFiles.NEH!tr
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.28247b
DeepInstinctMALICIOUS

How to remove Trojan:Win32/Antavmu!pz?

Trojan:Win32/Antavmu!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment