Trojan

Trojan:Win32/Antavmu!pz removal

Malware Removal

The Trojan:Win32/Antavmu!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Antavmu!pz virus can do?

  • Sample contains Overlay data
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan:Win32/Antavmu!pz?


File Info:

name: A8E9E0570441DB315A41.mlw
path: /opt/CAPEv2/storage/binaries/887a5e5ae8fd7a443755212b9557ba8904b374735cca61e9fb99072690e380c9
crc32: A9A86FCA
md5: a8e9e0570441db315a4135e0ac4b5bcf
sha1: 4524fd113937bfa634f7d6fccb1587066497c4f4
sha256: 887a5e5ae8fd7a443755212b9557ba8904b374735cca61e9fb99072690e380c9
sha512: 3675763953789c9990dd424c467caea098b5ad40d3cc1dc634a31541ba6238139e338a33af4ac796d474ac96f89f5f5a987a75c8595c1e34f5d81fe448528459
ssdeep: 1536:zvRiIIIY4wnMYe4iAuPjOQA8AkqUhMb2nuy5wgIP0CSJ+5yeIyG1GvxRx5:zvRlAMYiNCGdqU7uy5w9WMye35
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1D7B3A051B8F0D531E04544B28D6D7E73EE3EAA60074BA573E3D0B5698FF50A0A90F25B
sha3_384: ca9a4fe374ef5654becad405f7131c700e8e409964b90cec8e707c42515897712ba17eff42295b900517f9e46ba43184
ep_bytes: 00000000000000000000000000000000
timestamp: 2011-02-04 23:50:58

Version Info:

0: [No Data]

Trojan:Win32/Antavmu!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.KillFiles.tpMC
ClamAVWin.Malware.Antavmu-9791257-0
FireEyeGeneric.mg.a8e9e0570441db31
SkyhighBehavesLike.Win32.Generic.cm
Cylanceunsafe
SangforTrojan.Win32.Antavmu.Vzh5
AlibabaTrojan:Win32/Antavmu.01ce3fc1
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
APEXMalicious
CynetMalicious (score: 100)
AvastWin32:TrojanX-gen [Trj]
TACHYONTrojan/W32.Agent.110592.DOS
Trapminemalicious.moderate.ml.score
SophosML/PE-A
IkarusTrojan.Win32.Antavmu
GoogleDetected
Antiy-AVLTrojan/Win32.Antavmu
Kingsoftmalware.kb.a.872
XcitiumTrojWare.Win32.KillFiles.NEH@4qfvz0
MicrosoftTrojan:Win32/Antavmu!pz
GDataWin32.Trojan.Agent.WFHYQY
VaristW32/Antavmu.I.gen!Eldorado
McAfeeArtemis!A8E9E0570441
MalwarebytesGeneric.Malware.AI.DDS
TrendMicro-HouseCallTROJ_GEN.R03BH01AJ24
RisingTrojan.KillFiles!1.F348 (CLASSIC)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Poison.BP!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Trojan:Win32/Antavmu!pz?

Trojan:Win32/Antavmu!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment