Trojan

Trojan:Win32/Zombie!pz removal tips

Malware Removal

The Trojan:Win32/Zombie!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Zombie!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Zombie!pz?


File Info:

name: CB95FFD797392509ED6F.mlw
path: /opt/CAPEv2/storage/binaries/4a769318167b14c848d980497baa31d5b9b9a9ff14c0afc1f3fdc2143213afaf
crc32: 4B821955
md5: cb95ffd797392509ed6f415182c93663
sha1: 21acce916638eb35b197275e86e59c7638e7b01c
sha256: 4a769318167b14c848d980497baa31d5b9b9a9ff14c0afc1f3fdc2143213afaf
sha512: 7733c6c2bbab7524e046a2481c88b10ca809b0da281648d6ffc302c0da4a58e6c93c470c2b8fd27f8fcb69e0bee6a6a827f0213c06499866377927b9f51e8375
ssdeep: 1536:6X0aX0wPNPxJ87J8noEPuHWUHy6vqQdGWbODDTBXV8KeEQLIZIZsPhCOWcgZoQgX:mlbPNPVoG
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10C24D64ACD8B66ABC32AC3B959DB3A3D5C42B79773EBDE345D95B12600B0F34208514B
sha3_384: 247a2e25dc3406d48247a951a8b72d80e6103d6871953bfbaca3ccc7d020d6733879d14187e9670c431015e8a3143b95
ep_bytes: 00000000000000000000136000000000
timestamp: 2014-04-29 18:27:40

Version Info:

0: [No Data]

Trojan:Win32/Zombie!pz also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanTrojan.GenericKDZ.92970
SkyhighBehavesLike.Win32.Generic.dz
McAfeeArtemis!CB95FFD79739
VIPRETrojan.GenericKDZ.92970
SangforSuspicious.Win32.Save.a
BitDefenderTrojan.GenericKDZ.92970
Elasticmalicious (high confidence)
ClamAVWin.Malware.Lazy-9954277-0
RisingTrojan.Generic@AI.100 (RDML:NnzUOot84nz+0kyvNzItGg)
ZillyaTrojan.Cosmu.Win32.152467
FireEyeGeneric.mg.cb95ffd797392509
EmsisoftTrojan.GenericKDZ.92970 (B)
IkarusTrojan.Crypt
JiangminTrojan.Cosmu.atj
GoogleDetected
VaristW32/S-5a8d2096!Eldorado
Antiy-AVLGrayWare/Win32.Tampering.27230
MicrosoftTrojan:Win32/Zombie!pz
ArcabitTrojan.Generic.D16B2A
GDataTrojan.GenericKDZ.92970
CynetMalicious (score: 100)
ALYacTrojan.GenericKDZ.92970
MAXmalware (ai score=81)
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R03BH01KA23
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Shohdi.B!tr
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Trojan:Win32/Zombie!pz?

Trojan:Win32/Zombie!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment