Trojan

How to remove “Trojan:Win32/Phonzy.B!ml”?

Malware Removal

The Trojan:Win32/Phonzy.B!ml is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Phonzy.B!ml virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Phonzy.B!ml?


File Info:

name: C7844087F7CAAED43D88.mlw
path: /opt/CAPEv2/storage/binaries/1556fbc964741e572ff4e2f31d901580e15e003cf47055ed0fd4d391d574cea3
crc32: E3D53A10
md5: c7844087f7caaed43d887ced542c7111
sha1: ffe39a16032bff1dc5ecccdd781b34a9d5d7898a
sha256: 1556fbc964741e572ff4e2f31d901580e15e003cf47055ed0fd4d391d574cea3
sha512: 2369d824384a42a8c2ad879563307be9fb97f14b7ec322f7c7ca92d1e456516edd58906902de96955dfa410fbec360ab9bdd30601aa84e84efae6286508148c8
ssdeep: 192:ITj1yYq65k5aJNCaqgmh8rFwH1ryTRBTG+hTHfqdwDizEQL1ZZCo9n4:IT5yYMqcuGUFwVryrGAfCoipbZ/n4
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T15B03F0D4B6319891EE66F23F84DB8234673CFBE14AD35B438E143A225D53BE12DD6206
sha3_384: e55da5aa343acbc094714349b456dc98314fc9d87a060c243bf96826c6a5b7f986634bb594b965257b0d82e6bb23439d
ep_bytes: 5589e557565383ec0cc7042401000000
timestamp: 2024-02-11 00:06:50

Version Info:

0: [No Data]

Trojan:Win32/Phonzy.B!ml also known as:

BkavW32.Common.16D1232C
CynetMalicious (score: 100)
SkyhighBehavesLike.Win32.Generic.nz
GoogleDetected
Antiy-AVLTrojan/Win32.Wacatac
MicrosoftTrojan:Win32/Phonzy.B!ml
VBA32BScope.Trojan.Emotet
MalwarebytesMalware.AI.1478590605
RisingTrojan.Generic@AI.100 (RDML:W32n80zNuerPOMG1wdkLqg)
IkarusTrojan.Dropper
FortinetW32/PossibleThreat
DeepInstinctMALICIOUS

How to remove Trojan:Win32/Phonzy.B!ml?

Trojan:Win32/Phonzy.B!ml removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment