Trojan

Trojan:Win32/Astaroth!pz information

Malware Removal

The Trojan:Win32/Astaroth!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Astaroth!pz virus can do?

  • Authenticode signature is invalid

How to determine Trojan:Win32/Astaroth!pz?


File Info:

name: C18EC9789A3E69DF4055.mlw
path: /opt/CAPEv2/storage/binaries/5f8297aefdf07e9a69ca01416da2f30ed1d3d765a9dba1f84fc7d32df257cb2d
crc32: 22C388EC
md5: c18ec9789a3e69df4055fd74a9498993
sha1: 12f0d99fb39dd6eb87e3db70364c9f235ecce72f
sha256: 5f8297aefdf07e9a69ca01416da2f30ed1d3d765a9dba1f84fc7d32df257cb2d
sha512: 3005918e2da6e9efb54a0a3e7c4cf4d69fcfb50bd62bcafed712bb655989c8a6fafa4c178ebdc45a39c4b1f04ec9d97fc4de59d0528522e6290fc2a9eeb24f0c
ssdeep: 24:eH1GSw9APQeDR21SMwh0tYPFThtdCDIUovRidLYH/Lgm:yY1qQ1hWMStdCDapidcP
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1AA71F123A75649F3D6164F300F5B5982A6FFD67A03B0441C4F0552187EA22AAE72AF49
sha3_384: 156f0912b7d94711335f4c5ba9d0e732af70e58ffd6f15322be7cbe56087d5d67af71a82ef7e7acd1b40cda096a6842f
ep_bytes: 558bec81c4f4feffff837d0c01755968
timestamp: 2011-07-06 19:58:41

Version Info:

0: [No Data]

Trojan:Win32/Astaroth!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Starter.ljdn
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.208639
FireEyeGeneric.mg.c18ec9789a3e69df
CAT-QuickHealTrojan.Generic.19521
SkyhighW32/Ramnit.w
McAfeeW32/Ramnit.w
Cylanceunsafe
ZillyaTrojan.Genome.Win32.127201
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaMalware:Win32/km_2a4633.None
K7GWTrojan ( 0000bf9e1 )
K7AntiVirusTrojan ( 0000bf9e1 )
BaiduWin32.Trojan.Ramnit.d
VirITTrojan.Win32.Starter.YY
SymantecTrojan.Bamital
ESET-NOD32a variant of Win32/Ramnit.F
APEXMalicious
TrendMicro-HouseCallTROJ_STARTER.SM
ClamAVWin.Trojan.Ramnit-7845
KasperskyTrojan.Win32.SuperThreat.d
BitDefenderGen:Variant.Zusy.208639
NANO-AntivirusTrojan.Win32.SuperThreat.csztyw
SUPERAntiSpywareTrojan.Agent/Gen-Ramnit
AvastWin32:GenMalicious-FOR [Trj]
TencentTrojan.Win32.Starter.a
TACHYONTrojan/W32.Starter.3584
EmsisoftGen:Variant.Zusy.208639 (B)
F-SecureMalware.W32/Run.Ramnit.C
DrWebTrojan.Click2.2095
VIPREGen:Variant.Zusy.208639
TrendMicroTROJ_STARTER.SM
Trapminemalicious.high.ml.score
SophosW32/Ramnit-BO
IkarusTrojan.Rund
JiangminTrojan/Starter.if
WebrootW32.RamNit.Gen
GoogleDetected
AviraW32/Run.Ramnit.C
VaristW32/Ramnit.E.gen!Eldorado
Antiy-AVLVirus/Win32.Ramnit.f
KingsoftWin32.Troj.Agent.ac.3584
MicrosoftTrojan:Win32/Astaroth!pz
XcitiumTrojWare.Win32.Starter.ny@4m6u02
ArcabitTrojan.Zusy.D32EFF
ViRobotTrojan.Win32.Starter.3584.A
ZoneAlarmTrojan.Win32.SuperThreat.d
GDataGen:Variant.Zusy.208639
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Starter.R1831
Acronissuspicious
BitDefenderThetaGen:NN.ZedlaF.36802.aq4@aiZYGOc
ALYacGen:Variant.Zusy.208639
MAXmalware (ai score=100)
VBA32Trojan.SuperThreat
MalwarebytesTrojan.Runner
PandaGeneric Malware
RisingVirus.Ramnit!1.DDD7 (CLASSIC)
YandexTrojan.Starter!b8jAD0hXSqQ
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.W32.SuperThreat.d
FortinetW32/Ramnit.C!tr
AVGWin32:GenMalicious-FOR [Trj]
DeepInstinctMALICIOUS
alibabacloudVirus:Win/Ramnit.F

How to remove Trojan:Win32/Astaroth!pz?

Trojan:Win32/Astaroth!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment