Trojan

How to remove “Trojan:Win32/Zlader.A”?

Malware Removal

The Trojan:Win32/Zlader.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Zlader.A virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Mimics the system’s user agent string for its own requests
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Executed a process and injected code into it, probably while unpacking
  • Attempts to remove evidence of file being downloaded from the Internet
  • Attempts to stop active services
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself

Related domains:

get.adobe.com
www.adobe.com

How to determine Trojan:Win32/Zlader.A?


File Info:

crc32: 22D70690
md5: 37137f2f9bf160f13c499c38a24f9378
name: 37137F2F9BF160F13C499C38A24F9378.mlw
sha1: 0214a12f9acd994bc888261fd0692b9b97307bdf
sha256: 4c1d0bec86f31fafcad797e0c5c9990b399eec3bda2d5e975145d44cb4d6cf26
sha512: 385fba77f4762ccb4cfe4bd80c501242dd6ec1ac6ebdda3cdedebaf6ef12ae3c0ae7b776b3e8d9f57c2f26b27763e46c085b116fff305e6b1742fe833cf5a539
ssdeep: 384:nhTk1KwXZEzt5uXytW6G3Ja7S84flOis8nWf0p/:hTmZEzt5QeGZa3aOP8Wf0
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/Zlader.A also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop6.44366
McAfeeArtemis!37137F2F9BF1
CylanceUnsafe
ZillyaTrojan.SpyEyes.Win32.13124
CrowdStrikewin/malicious_confidence_100% (D)
K7GWHacktool ( 700007861 )
Cybereasonmalicious.f9bf16
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Zlader.L
APEXMalicious
AvastWin32:Stoberox-A [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Razy.160990
NANO-AntivirusVirus.Win32.Gen.ccmw
MicroWorld-eScanGen:Variant.Razy.160990
TencentTrojan-Ransom.Win32.Zlader.a
Ad-AwareGen:Variant.Razy.160990
SophosML/PE-A + Troj/Zlader-D
ComodoMalware@#1xw8qy9vaze7o
BitDefenderThetaAI:Packer.1E8918581E
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_ZLADER.SMA
McAfee-GW-EditionBehavesLike.Win32.VirRansom.mc
FireEyeGeneric.mg.37137f2f9bf160f1
EmsisoftGen:Variant.Razy.160990 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanSpy.SpyEyes.mmj
AviraTR/Crypt.ZPACK.Gen
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Zlader.A
GDataGen:Variant.Razy.160990
AhnLab-V3Malware/Win32.Generic.C998559
Acronissuspicious
VBA32Malware-Cryptor.Inject.gen.2
MAXmalware (ai score=99)
MalwarebytesMalware.AI.3906858984
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_ZLADER.SMA
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazqXp3C/7EpPRkW6+cvPxNIF)
IkarusTrojan.Win32.Zlader
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Generic.AC.23f9e0!tr
AVGWin32:Stoberox-A [Trj]
Paloaltogeneric.ml

How to remove Trojan:Win32/Zlader.A?

Trojan:Win32/Zlader.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment