Trojan

Trojan:Win32/Zbot.SIBJ!MTB malicious file

Malware Removal

The Trojan:Win32/Zbot.SIBJ!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Zbot.SIBJ!MTB virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Zbot.SIBJ!MTB?


File Info:

name: 88274077F94DEE235BC4.mlw
path: /opt/CAPEv2/storage/binaries/6438e047449b134e04abe95048422e62f45643100cf17d4ea4d9218c8f7e0c13
crc32: 4CEC3B12
md5: 88274077f94dee235bc4e11d74e3852e
sha1: 4f147f027d233701aa4a9591e178832b77478b94
sha256: 6438e047449b134e04abe95048422e62f45643100cf17d4ea4d9218c8f7e0c13
sha512: ba29bc26dac139f3e4c932faaa4a2a849a0e6a84f53f2d075793c9f141b4a4765abebff918a700268a56f1a4a9f836213f2c68ad7041b9c6a555c07dafd84300
ssdeep: 192:tLfvZVG6Hbk10mtU1aw4FGgVwsFUBg40UUjf9tHgznXA:xpyHG1pgVNCgkUj1tH3
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T137025C9641D0B271D9DB0BBBC83F730800FA47A48294C59B58C83DD6FE4969BB535022
sha3_384: d1bd850ed9911ab5da93e5bc7dff55a88e0557061a70e9025d6b83ced419ac7295b636e983c6211a24e98bacfda03dee
ep_bytes:
timestamp: 2011-08-30 02:44:52

Version Info:

0: [No Data]

Trojan:Win32/Zbot.SIBJ!MTB also known as:

BkavW32.AIDetect.malware1
FireEyeGeneric.mg.88274077f94dee23
CAT-QuickHealTrojan.GenericPMF.S15186638
BaiduWin32.Trojan.Kryptik.je
CyrenW32/S-ea71865d!Eldorado
APEXMalicious
AvastWin32:Agent-AUYE [Trj]
SophosML/PE-A
ComodoTrojWare.Win32.Spy.Zbot.EKA@5ik129
DrWebTrojan.PWS.Panda.7719
VIPRETrojan.Win32.Zbot.mc (v)
McAfee-GW-EditionBehavesLike.Win32.Upatre.xh
SentinelOneStatic AI – Suspicious PE
Antiy-AVLTrojan/Win32.Yakes
MicrosoftTrojan:Win32/Zbot.SIBJ!MTB
MalwarebytesMalware.AI.1509526789
RisingTrojan.Generic@ML.84 (RDML:ZCygds+6Acu1+JPn3hLZmw)
IkarusTrojan.Win32.Crypt
FortinetW32/Qukart.AO!tr
AVGWin32:Agent-AUYE [Trj]

How to remove Trojan:Win32/Zbot.SIBJ!MTB?

Trojan:Win32/Zbot.SIBJ!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment