Trojan

About “Trojan:Win32/Antavmu!pz” infection

Malware Removal

The Trojan:Win32/Antavmu!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Antavmu!pz virus can do?

  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan:Win32/Antavmu!pz?


File Info:

name: A0FA51457A76DADCB603.mlw
path: /opt/CAPEv2/storage/binaries/432ffe8ea32c5c71b6f47b428246154ce22e6af02326e3f4037546e328941ddb
crc32: BBA8439D
md5: a0fa51457a76dadcb6039f62e4f5b0d2
sha1: 06fa9ead4c7e0ae3ad3a73b78653ee29228d4230
sha256: 432ffe8ea32c5c71b6f47b428246154ce22e6af02326e3f4037546e328941ddb
sha512: a56b6b4fb708f753181b6a51fbb5282117b110544c2eeb10015d71d21131c3283344290849b04b31c326ef8449b1267e83801aff28075b60f6e5451526055000
ssdeep: 1536:hb46qyOAm6K5QPqfhVWbdsmA+RjPFLC+e5hK0ZGUGf2g:hRqyOAbNPqfcxA+HFshKOg
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1E8739E22B9D0C435F04485B15D3D1A72BE3EEA641A5793FB9BD4F5A8CDF01909A0B32B
sha3_384: 3b8ccd1245faa0d3ae4b1403db4adb48e155b28ec4adaf5b3a05a91e6b568ecf3f1538261fd764a107b6d1f7e4c0551f
ep_bytes: a11bf14000c1e002a31ff14000526a00
timestamp: 2011-01-11 01:44:56

Version Info:

0: [No Data]

Trojan:Win32/Antavmu!pz also known as:

BkavW32.AIDetectMalware
LionicVirus.DOS.Moctezuma.tnBC
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.FileInfector.eGW@aKDb32o
FireEyeGeneric.mg.a0fa51457a76dadc
CAT-QuickHealTrojan.AntavmuPMF.S31541431
SkyhighBehavesLike.Win32.Dropper.lh
McAfeePWS-OnlineGames.kz
Cylanceunsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 001f4e2b1 )
AlibabaMalware:Win32/km_2242df.None
K7GWTrojan ( 001f4e2b1 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.FileInfector.EC4F1B
BitDefenderThetaAI:Packer.2D4DD5B71E
VirITTrojan.Win32.Generic.ABFQ
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/KillFiles.NEH
APEXMalicious
ClamAVWin.Malware.Poison-10016370-0
KasperskyUDS:Trojan.Win32.Generic
BitDefenderGen:Trojan.FileInfector.eGW@aKDb32o
NANO-AntivirusTrojan.Win32.Antavmu.dhwgp
AvastWin32:TrojanX-gen [Trj]
TencentTrojan.Win32.Agent.mgr
TACHYONTrojan/W32.Antavmu.74752.E
EmsisoftGen:Trojan.FileInfector.eGW@aKDb32o (B)
F-SecureTrojan.TR/Antavmu.doena
DrWebTrojan.Siggen8.42052
TrendMicroTROJ_GEN.R002C0DA824
SophosMal/Antavmu-A
IkarusTrojan.Win32.Antavmu
JiangminTrojan.Generic.hrpwg
GoogleDetected
AviraTR/Antavmu.doena
VaristW32/Antavmu.D.gen!Eldorado
Antiy-AVLTrojan/Win32.Antavmu
Kingsoftmalware.kb.a.994
XcitiumTrojWare.Win32.KillFiles.NEH@4qfvz0
MicrosoftTrojan:Win32/Antavmu!pz
ZoneAlarmUDS:Trojan.Win32.Generic
GDataWin32.Trojan.Antavmu.A
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Antavmu.R25058
ALYacGen:Trojan.FileInfector.eGW@aKDb32o
MAXmalware (ai score=82)
VBA32BScope.Trojan.Downloader
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DA824
RisingTrojan.Win32.Antavmu.b (CLASSIC)
YandexTrojan.GenAsa!mLg/yf6hjK0
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.3411146.susgen
FortinetW32/KillFiles.NEH!tr
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.d4c7e0
DeepInstinctMALICIOUS

How to remove Trojan:Win32/Antavmu!pz?

Trojan:Win32/Antavmu!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment