Trojan

Trojan:Win32/Azorult!pz removal guide

Malware Removal

The Trojan:Win32/Azorult!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Azorult!pz virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Trojan:Win32/Azorult!pz?


File Info:

name: 2BC6F8E9414A89E75748.mlw
path: /opt/CAPEv2/storage/binaries/56508622bed2c3b44fcd4d862a812db7c03bee2c0e9b35271861884bdb78e374
crc32: A4046AD9
md5: 2bc6f8e9414a89e7574870985e37f5a4
sha1: 5cc48500d99f4ced4c01c69792f022cf00b4d3fc
sha256: 56508622bed2c3b44fcd4d862a812db7c03bee2c0e9b35271861884bdb78e374
sha512: 4f14b8a78b7caa587e011c7d2610629a0f7bee06b7b4055cbce13c4fb6b5c4a2b27675d4a0ebe019f5500117cb7ad28cff27f42600cdac9860eda4ed53e9a7c0
ssdeep: 24576:Wu6J33O0c+JY5UZ+XC0kGsoTacbl6u2i5:4u0c++OCvkGsEacJ67c
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T173159D22B3DDC360CB669173BF69B3056EBB7C650630B85B2F980D3DA960171162D7A3
sha3_384: 5acd08fea08e4466b4f2a1623928d0f46916465b93314b61c47ec150aeae89b67a2c4bda04f86f60744a3e96df330bf9
ep_bytes: e8b5d00000e97ffeffffcccccccccccc
timestamp: 2019-05-14 14:55:21

Version Info:

Translation: 0x0809 0x04b0

Trojan:Win32/Azorult!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.AutoIt.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.65554490
ClamAVWin.Trojan.Autoit-10018188-0
FireEyeGeneric.mg.2bc6f8e9414a89e7
CAT-QuickHealTrojan.AutoIT.Injector.A
ALYacTrojan.GenericKD.65554490
MalwarebytesGeneric.Malware.AI.DDS
SangforVirus.Win32.Save.a
K7AntiVirusTrojan ( 0055dc781 )
AlibabaTrojan:Win32/AutoitCrypt.180
K7GWTrojan ( 0055dc781 )
CrowdStrikewin/malicious_confidence_100% (D)
SymantecAUT.Heuristic!gen5
ESET-NOD32Win32/Packed.Autoit.NBC suspicious
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.AutoIt.gen
BitDefenderTrojan.GenericKD.65554490
TencentTrojan.Win32.Agent.hfw
DrWebTrojan.AutoIt.426
VIPRETrojan.GenericKD.65554490
TrendMicroTrojan.AutoIt.CRYPTINJECT.SMA
Trapminesuspicious.low.ml.score
SophosTroj/AutoIt-CLG
IkarusTrojan.Win32.Autoit
GDataTrojan.GenericKD.65554490
WebrootW32.Malware.gen
GoogleDetected
AviraDR/AutoIt.Gen8
Antiy-AVLTrojan[Packed]/Win32.Autoit
Kingsoftmalware.kb.a.999
ArcabitTrojan.Generic.D3E8483A
ZoneAlarmHEUR:Trojan.Win32.Convagent.gen
MicrosoftTrojan:Win32/Azorult!pz
VaristW32/AutoIt.QF.gen!Eldorado
AhnLab-V3Win-Trojan/AutoInj.Exp
Acronissuspicious
BitDefenderThetaAI:Packer.39DE3CF819
MAXmalware (ai score=80)
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTrojan.AutoIt.CRYPTINJECT.SMA
RisingPUF.Pack-AutoIt!1.B8E7 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetAutoIt/Injector.ESJ!tr
Cybereasonmalicious.0d99f4
DeepInstinctMALICIOUS

How to remove Trojan:Win32/Azorult!pz?

Trojan:Win32/Azorult!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment