Trojan

Trojan:Win32/Znyonm removal guide

Malware Removal

The Trojan:Win32/Znyonm is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Znyonm virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Trojan:Win32/Znyonm?


File Info:

name: A229CB823576BBD773BE.mlw
path: /opt/CAPEv2/storage/binaries/4b0669367c06892e5cb520e4cc0d135c93d3e361bb5e2d638a87bfb6854f1c03
crc32: E3BFA7F0
md5: a229cb823576bbd773be5a646537cbc4
sha1: 4d8a46968c20b58b44dc6bdb1e2833931b32f83c
sha256: 4b0669367c06892e5cb520e4cc0d135c93d3e361bb5e2d638a87bfb6854f1c03
sha512: 91d53b86732761d39037f8833d3710482fba427b09319951b7d55aecad278253da506f194c13ac31fe8a394bf8778d0621b8dc83374f22fcb37b413f102649b2
ssdeep: 12288:cmwxrUbsJGmd2ArcuoVX9X6a9Dhvhzb0D46Nmbj:cLrSsJGmpY6a9DhvhUEWm
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T16F55841172F95B59F5F34FB86ABAA611087ABC6ADF11C6DF1261904E0C21BD08970F3B
sha3_384: 9b9e66bd2681d660a9093d6911bff6b4b3b168fef9ecf727a761947edcc8b2fc4d474eeb2a9bdcf2f84cc0b8ee3e7e21
ep_bytes: e903bd0100e979ef0200e9e1f00000e9
timestamp: 2023-10-03 11:52:46

Version Info:

0: [No Data]

Trojan:Win32/Znyonm also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Mokes.4!c
MicroWorld-eScanGen:Variant.Lazy.388937
ALYacGen:Variant.Lazy.388937
SangforTrojan.Win32.SmokeLoader.V5ul
AlibabaTrojan:Win32/Smokeloader.a6591f08
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Smokeloader.F
APEXMalicious
KasperskyUDS:Backdoor.Win32.Mokes.gen
BitDefenderGen:Variant.Lazy.388937
AvastSpywareX-gen [Trj]
EmsisoftGen:Variant.Lazy.388937 (B)
VIPREGen:Variant.Lazy.388937
McAfee-GW-EditionArtemis!Trojan
FireEyeGen:Variant.Lazy.388937
SophosMal/Generic-S
GDataGen:Variant.Lazy.388937
WebrootW32.Spyware.Gen
GoogleDetected
MAXmalware (ai score=86)
GridinsoftTrojan.Win32.Amadey.bot
ArcabitTrojan.Lazy.D5EF49
ZoneAlarmUDS:Backdoor.Win32.Mokes.gen
MicrosoftTrojan:Win32/Znyonm
CynetMalicious (score: 100)
McAfeeArtemis!A229CB823576
VBA32BScope.TrojanPSW.Convagent
Cylanceunsafe
RisingTrojan.SmokeLoader!1.EB4F (CLASSIC)
IkarusTrojan.Win32.Krypt
AVGSpywareX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Trojan:Win32/Znyonm?

Trojan:Win32/Znyonm removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment