Trojan

How to remove “Trojan:Win32/Phonzy.B!ml”?

Malware Removal

The Trojan:Win32/Phonzy.B!ml is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Phonzy.B!ml virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Trojan:Win32/Phonzy.B!ml?


File Info:

name: 9D8D075E5E5C819D462F.mlw
path: /opt/CAPEv2/storage/binaries/2a12b7c040b874b2bf9a9181378af82889d438e41e8e453395ac07295a0197ca
crc32: D34CEF45
md5: 9d8d075e5e5c819d462f8b19826842f3
sha1: 521e6b71f7ea6b0717c2c43f0266529cf812f2de
sha256: 2a12b7c040b874b2bf9a9181378af82889d438e41e8e453395ac07295a0197ca
sha512: 046bc77fd19e56d00145ca47dc02dce7203b756e006701a0f540dda7d9ff22ce65ca0d9c8a69d639fb38303685bafdd4b38247685429c9233a379816d3c8c809
ssdeep: 1536:SmaoDu3BN95/g4byc6H5c6HcT66vlm3GGk5EGu:LyH99g4byc6H5c6HcT66vlmm+Gu
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16333F86B4891EC7EC8A212F026BD0F26C376D9B0B844E54ADBC42D6B75A11D2F1B431F
sha3_384: 67d55fe375bae2abf99d177084e1cf08067e5d475ce2ac1c065a7a049edd7486998ead49ccf803d92238fac0a30722e7
ep_bytes: 00000000000000000000000000000000
timestamp: 2001-08-24 15:00:00

Version Info:

0: [No Data]

Trojan:Win32/Phonzy.B!ml also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
ClamAVWin.Trojan.Jeefo-1
SkyhighBehavesLike.Win32.Generic.qt
MalwarebytesGeneric.Malware.AI.DDS
SangforSuspicious.Win32.Save.a
Cybereasonmalicious.1f7ea6
SymantecML.Attribute.HighConfidence
APEXMalicious
CynetMalicious (score: 100)
AvastWin32:Crypt-SJB [Trj]
SophosGeneric ML PUA (PUA)
F-SecureMalware.W32/Jeefo.A
BaiduWin32.Trojan.Jeefo.b
SentinelOneStatic AI – Suspicious PE
GoogleDetected
AviraW32/Jeefo.A
Antiy-AVLTrojan/Win32.SGeneric
Kingsoftmalware.kb.a.896
MicrosoftTrojan:Win32/Phonzy.B!ml
GDataWin32.Virus.Hidrag.A
VaristW32/Jeefo.B.gen!Eldorado
AhnLab-V3Win32/Hidrag.H.X1316
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BH0CAK24
RisingTrojan.Generic@AI.100 (RDML:0H9AddQQ2KhgREs9TPPAnA)
IkarusVirus.Win32.Hidrag
MaxSecureTrojan.Malware.3411146.susgen
FortinetW32/PossibleThreat
AVGWin32:Crypt-SJB [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Phonzy.B!ml?

Trojan:Win32/Phonzy.B!ml removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment