Trojan

Trojan:Win32/Zombie!pz removal

Malware Removal

The Trojan:Win32/Zombie!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Zombie!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Zombie!pz?


File Info:

name: 6F5573DF8E4DA78FC8AA.mlw
path: /opt/CAPEv2/storage/binaries/6936c00564baf0d20efcfbcd6d18dbc222b039cc13150bc39a7ac2a814850ae2
crc32: 4C8C2519
md5: 6f5573df8e4da78fc8aaace41d6c5acd
sha1: 529ae8e2df4ce690525d8d4ba932785939ebe5c7
sha256: 6936c00564baf0d20efcfbcd6d18dbc222b039cc13150bc39a7ac2a814850ae2
sha512: a6d956b0ca299a4451a069a613cd8335cd99c1ef0f5b834300119b7b7e9a873b27ecfabd74d522f7e1c55e1ffd9b267bdd28c30dd8417db14e0f224146ef7574
ssdeep: 12288:RSFZAzqDisnyJfeeFhcc0cc9zqDisnyJfeeXPcc0ccPhRGRE:sAzqDisnyJfeeFhcc0cc9zqDisnyJfer
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T162A46D669F53F451E01AD2B260EB7F9DDD2E3E82FF45EA508A74705E1852FB0232A071
sha3_384: 70e7a6b41c7d8a6de67822b60e9a88b663663cb9d2b7c8203765fb73d81d5bc41d25e9e37553030591682e009981caab
ep_bytes: 00000000000000000000136000000000
timestamp: 2014-04-29 18:27:40

Version Info:

0: [No Data]

Trojan:Win32/Zombie!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
SkyhighBehavesLike.Win32.Generic.gm
McAfeeArtemis!6F5573DF8E4D
ZillyaTrojan.Cosmu.Win32.152467
SangforTrojan.Win32.Agent.Vd4m
CrowdStrikewin/malicious_confidence_100% (D)
SymantecML.Attribute.HighConfidence
CynetMalicious (score: 100)
ClamAVWin.Malware.Lazy-9954277-0
SUPERAntiSpywareTrojan.Agent/Gen-Crypt
AvastWin32:Malware-gen
FireEyeGeneric.mg.6f5573df8e4da78f
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Cosmu.ast
VaristW32/S-5a8d2096!Eldorado
Antiy-AVLGrayWare/Win32.Tampering.27230
MicrosoftTrojan:Win32/Zombie!pz
GoogleDetected
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R023H01KC23
RisingTrojan.Generic@AI.100 (RDML:LZk7pRPhc3z3U/ffHyXZ0g)
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Shohdi.B!tr
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Trojan:Win32/Zombie!pz?

Trojan:Win32/Zombie!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment