Trojan

Should I remove “Trojan:Win32/Zombie!pz”?

Malware Removal

The Trojan:Win32/Zombie!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Zombie!pz virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Zombie!pz?


File Info:

name: ED05FDFC1D5A6A4133B4.mlw
path: /opt/CAPEv2/storage/binaries/daee319ac6235e86d166ae6db9d0d376c7e44b9c59c6edee27f4bc7a7b4dcbdb
crc32: 431A509E
md5: ed05fdfc1d5a6a4133b498dbd0de8aaa
sha1: 7b0147c3d5ebea5e0d95cc2bb58b298e981a30eb
sha256: daee319ac6235e86d166ae6db9d0d376c7e44b9c59c6edee27f4bc7a7b4dcbdb
sha512: b11b753617dd0393f994358b58ae4b438c801255e1aa80fce8f94e1716ada1ce8b6870825389a9c2728e705fa6e7610872e0b000992619ac69888ab0c059b2b0
ssdeep: 3072:mlbPNPLSPqqWKuoKyt00BcpI5Ehh7sS5zhT7/3e++10kjQnUC6dVuB3n5QV09Prz:mlZ5qWnoK8aT7sE3eCksnUCiVI3JtjOu
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E284F08B89D8FA96C36293FB159737482D59FAC732E2CE71DD61B2628460F7474C2063
sha3_384: b4ba92d1457ab84781bc0f9aa91a17af90e127263100ac341ba2f4576cf328012bace1f6c5ef5a44e0deb3ef283162f9
ep_bytes: 00000000000000000000136000000000
timestamp: 2014-04-29 18:27:40

Version Info:

0: [No Data]

Trojan:Win32/Zombie!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.92970
SkyhighBehavesLike.Win32.Generic.fm
McAfeeArtemis!ED05FDFC1D5A
VIPRETrojan.GenericKDZ.92970
SangforSuspicious.Win32.Save.a
BitDefenderTrojan.GenericKDZ.92970
SymantecML.Attribute.HighConfidence
ClamAVWin.Malware.Lazy-9954277-0
RisingTrojan.Generic@AI.100 (RDML:Va/Tf/fHu8jmcUfWcTzdIg)
SophosGeneric ML PUA (PUA)
ZillyaTrojan.Cosmu.Win32.152467
TrendMicroTROJ_GEN.R03BC0DK723
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.ed05fdfc1d5a6a41
EmsisoftTrojan.GenericKDZ.92970 (B)
IkarusTrojan.Crypt
JiangminTrojan.Cosmu.atj
GoogleDetected
VaristW32/S-5a8d2096!Eldorado
Antiy-AVLGrayWare/Win32.Tampering.27230
MicrosoftTrojan:Win32/Zombie!pz
ArcabitTrojan.Generic.D16B2A
SUPERAntiSpywareTrojan.Agent/Gen-Crypt
GDataTrojan.GenericKDZ.92970
CynetMalicious (score: 100)
ALYacTrojan.GenericKDZ.92970
MAXmalware (ai score=87)
DeepInstinctMALICIOUS
TrendMicro-HouseCallTROJ_GEN.R03BC0DK723
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Shohdi.B!tr
AVGWin32:Malware-gen
AvastWin32:Malware-gen
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Trojan:Win32/Zombie!pz?

Trojan:Win32/Zombie!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment