Trojan

Trojan:Win32/Zombie!pz information

Malware Removal

The Trojan:Win32/Zombie!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Zombie!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Zombie!pz?


File Info:

name: 80D5E25C6387CEA7EA28.mlw
path: /opt/CAPEv2/storage/binaries/3ea3cc015a4d2c6227b09fdaa4004033a50af523ea61859d05282feb779d6926
crc32: D574F1AD
md5: 80d5e25c6387cea7ea28f641447ed87d
sha1: 2461003b59139159b234858ba64ee0e5e3f02b28
sha256: 3ea3cc015a4d2c6227b09fdaa4004033a50af523ea61859d05282feb779d6926
sha512: da9fb2b43068ccc61f3dbba5d17e3bb78f2ca80a65f0f9e00d7490d3c180cccec0bcc6e00f4098380c64abe56aec7238ae0b487ce3ccb3224f95b0f2d972cb81
ssdeep: 768:qKVeIuKVeIaCgx+qsaCgx+qswPNPxJ87J8A7:6X0aX0wPNPxJ87J82
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AC04E5539DE5BAABC32392FF1A9B3B082C65AEC73B56CEB42D4271724411F7069D2053
sha3_384: bc1af1374f00e54009e087dca9898c6abc0202a9db63c9e38742484c9b48392d4cde538c1edce900b82bae3e7aef5c58
ep_bytes: 00000000000000000000136000000000
timestamp: 2014-04-29 18:27:40

Version Info:

0: [No Data]

Trojan:Win32/Zombie!pz also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanTrojan.GenericKDZ.92970
SkyhighArtemis
McAfeeArtemis!80D5E25C6387
ZillyaTrojan.Cosmu.Win32.152467
SangforSuspicious.Win32.Save.a
BitDefenderTrojan.GenericKDZ.92970
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ClamAVWin.Malware.Lazy-9954277-0
RisingTrojan.Generic@AI.100 (RDML:bxy7Axz3TczLGWm8dx8zyQ)
SophosGeneric ML PUA (PUA)
VIPRETrojan.GenericKDZ.92970
FireEyeTrojan.GenericKDZ.92970
EmsisoftTrojan.GenericKDZ.92970 (B)
IkarusTrojan.Crypt
JiangminTrojan.Cosmu.atj
VaristW32/S-5a8d2096!Eldorado
Antiy-AVLGrayWare/Win32.Tampering.27230
MicrosoftTrojan:Win32/Zombie!pz
ArcabitTrojan.Generic.D16B2A
GDataTrojan.GenericKDZ.92970
GoogleDetected
ALYacTrojan.GenericKDZ.92970
MAXmalware (ai score=86)
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R03BH01KE23
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.190597413.susgen
FortinetW32/Shohdi.B!tr

How to remove Trojan:Win32/Zombie!pz?

Trojan:Win32/Zombie!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment