Trojan

Trojan:Win32/Zombie!pz removal tips

Malware Removal

The Trojan:Win32/Zombie!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Zombie!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Zombie!pz?


File Info:

name: 0AE414D2D88E7044F4DF.mlw
path: /opt/CAPEv2/storage/binaries/47426cf2c22264a5a8dec11a384540438ccdf8276715db8ef28714a76d24b565
crc32: F128E43C
md5: 0ae414d2d88e7044f4dfcc7809aabedd
sha1: 26466c59ca22f4e80e5a1699ca4a84fc510e47be
sha256: 47426cf2c22264a5a8dec11a384540438ccdf8276715db8ef28714a76d24b565
sha512: e4809fbbdb7f8c5bb0e03766e33c7681ea436c51fcc921a73bbd15bf29def28daf7ef32fdf95518da55c925c3e6fd163f52593309ea0b5793e4f2a0e91c16efe
ssdeep: 768:qKVeIuKVeIaCgx+qsaCgx+qs9lRlCawDI+Ix:6X0aX09r5wU/x
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13B04E51B8DE9AD97C323E2FF2A5A3A042C29E3C77752DEB51D4232664410F34A9D3123
sha3_384: bd2f91ce949d7cebf2d0b4bed48c8f4e3f1723263091f7a98a005e18c228867a77d37f92ff80bce72d98b32a3af457b3
ep_bytes: 00000000000000000000136000000000
timestamp: 2014-04-29 18:27:40

Version Info:

0: [No Data]

Trojan:Win32/Zombie!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.92970
FireEyeTrojan.GenericKDZ.92970
SkyhighArtemis!Trojan
McAfeeArtemis!0AE414D2D88E
ZillyaTrojan.Cosmu.Win32.152467
SangforSuspicious.Win32.Save.a
BitDefenderTrojan.GenericKDZ.92970
ClamAVWin.Malware.Lazy-9954277-0
RisingTrojan.Generic@AI.100 (RDML:oH0TPjSZHuk1pfbNp+NnzA)
SophosGeneric ML PUA (PUA)
VIPRETrojan.GenericKDZ.92970
EmsisoftTrojan.GenericKDZ.92970 (B)
IkarusTrojan.Crypt
JiangminTrojan.Cosmu.atj
GoogleDetected
VaristW32/S-5a8d2096!Eldorado
Antiy-AVLGrayWare/Win32.Tampering.27230
MicrosoftTrojan:Win32/Zombie!pz
ArcabitTrojan.Generic.D16B2A
GDataTrojan.GenericKDZ.92970
CynetMalicious (score: 100)
ALYacTrojan.GenericKDZ.92970
MAXmalware (ai score=82)
DeepInstinctMALICIOUS
TrendMicro-HouseCallTROJ_GEN.R03BH01K923
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Shohdi.B!tr

How to remove Trojan:Win32/Zombie!pz?

Trojan:Win32/Zombie!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment