Trojan

Trojan:Win32/Zbot.SIBD2!MTB information

Malware Removal

The Trojan:Win32/Zbot.SIBD2!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Zbot.SIBD2!MTB virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Trojan:Win32/Zbot.SIBD2!MTB?


File Info:

name: 65B42570896D620B7A87.mlw
path: /opt/CAPEv2/storage/binaries/039c337e996d6eac9f04911a711b356a758a51b59825d51613e654cf25d55088
crc32: CB4BBB07
md5: 65b42570896d620b7a8732699a4d1f65
sha1: 57cfdb4140827a6950dadf7874e044a83cc608aa
sha256: 039c337e996d6eac9f04911a711b356a758a51b59825d51613e654cf25d55088
sha512: 7317f722d1f89471d8f741fd8f9c8f536948e4a2c0bfa305245a0fe08b93bc88324092d515fe9864e106461f187c13bcde708be412bba105ee2a09671430128e
ssdeep: 768:k/Sc9h1nnwDVDIpWSylT9lV3ahij6tvLUdoSQ:k/Sc9nwJKWSyblFas6t4eSQ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T157036D023350C501D0C4C4B6495BD9B81AB9FD351EB22AD33AD37F2EFD78AE06523269
sha3_384: c4bde1e899bef1d007eea8c94b43707217f84c82f028f109bfa02374c3eff14c4ffce37173a88bc7632a3384a151f81e
ep_bytes: 51e89af9ffff84c07405e851fbffff59
timestamp: 2010-05-27 15:23:35

Version Info:

0: [No Data]

Trojan:Win32/Zbot.SIBD2!MTB also known as:

LionicTrojan.Win32.Zbot.lh9d
DrWebTrojan.Inject.63684
MicroWorld-eScanTrojan.Generic.7422894
FireEyeGeneric.mg.65b42570896d620b
ALYacTrojan.Generic.7422894
MalwarebytesMalware.AI.3530855360
VIPRETrojan.Generic.7422894
SangforSuspicious.Win32.Save.a
AlibabaBackdoor:Win32/Sefbov.936c0a88
Cybereasonmalicious.0896d6
VirITTrojan.Win32.Scar.IG
SymantecTrojan.Gen.MBT
Elasticmalicious (high confidence)
APEXMalicious
ClamAVWin.Trojan.Zbot-36849
KasperskyHEUR:Backdoor.Win32.Generic
BitDefenderTrojan.Generic.7422894
NANO-AntivirusTrojan.Win32.IRCNite.dcdtrw
TencentMalware.Win32.Gencirc.114e1a8b
EmsisoftTrojan.Generic.7422894 (B)
ZillyaTrojan.Zbot.Win32.63445
TrendMicroMal_Zbot-15
McAfee-GW-EditionPWS-Zbot.gen.ed
Trapminemalicious.high.ml.score
SophosMal/Zbot-BQ
SentinelOneStatic AI – Suspicious PE
GDataTrojan.Generic.7422894
JiangminBackdoor.Generic.mr
WebrootW32.Malware.Gen
GoogleDetected
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.Unknown
XcitiumMalCrypt.Indus!@1qrzi1
ArcabitTrojan.Generic.D7143AE
ZoneAlarmHEUR:Backdoor.Win32.Generic
MicrosoftTrojan:Win32/Zbot.SIBD2!MTB
CynetMalicious (score: 100)
Acronissuspicious
McAfeePWS-Zbot.gen.ed
VBA32SScope.Malware-Cryptor.Tibs.1654
Cylanceunsafe
TrendMicro-HouseCallMal_Zbot-15
RisingMalware.Undefined!8.C (TFE:3:5N6ZQSaYPAE)
IkarusWorm.Win32.Ramnit
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Trojan:Win32/Zbot.SIBD2!MTB?

Trojan:Win32/Zbot.SIBD2!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment