Trojan

Trojan:Win32/Zombie!pz removal

Malware Removal

The Trojan:Win32/Zombie!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Zombie!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Zombie!pz?


File Info:

name: AA1564403CDB1CEF1A1F.mlw
path: /opt/CAPEv2/storage/binaries/c32382bdb20609d5968dd7883ecbf5cfc546ba648ddd4971f791195f5d75c242
crc32: F6973D49
md5: aa1564403cdb1cef1a1feb973092a865
sha1: f446067a3d077e2a4110e09074e43a6d411f1082
sha256: c32382bdb20609d5968dd7883ecbf5cfc546ba648ddd4971f791195f5d75c242
sha512: 9a7ac0abb355d8e59fecc646b9b69e2ea8a13b9a24d92ed7b2270d5c4a24eae11ebe5d1333443790677da4e16dd6f2ee3ed1bec219229d12caf59e43bf607fa7
ssdeep: 768:qKVeIuKVeIaCgx+qsaCgx+qs9lRlCaw85nd5nHlkSI:6X0aX09r5w8NdNCSI
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C804E65B9DE5E997C363D3FF656A36482C66A2DB7352DEB01D41F26A0410F30A9C3027
sha3_384: dbbdb1205d69025664444b2313aa29abd45bd308f0e7a0a82a27eccdcc5d0856d7d6f06a2002daedaac0943921aeb231
ep_bytes: 00000000000000000000136000000000
timestamp: 2014-04-29 18:27:40

Version Info:

0: [No Data]

Trojan:Win32/Zombie!pz also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.aa1564403cdb1cef
SkyhighBehavesLike.Win32.Generic.cz
McAfeeArtemis!AA1564403CDB
VIPRETrojan.GenericKDZ.92970
SangforSuspicious.Win32.Save.a
ClamAVWin.Malware.Lazy-9954277-0
BitDefenderTrojan.GenericKDZ.92970
MicroWorld-eScanTrojan.GenericKDZ.92970
EmsisoftTrojan.GenericKDZ.92970 (B)
ZillyaTrojan.Cosmu.Win32.152467
SophosGeneric ML PUA (PUA)
IkarusTrojan.Crypt
GDataTrojan.GenericKDZ.92970
JiangminTrojan.Cosmu.atj
GoogleDetected
Antiy-AVLGrayWare/Win32.Tampering.27230
ArcabitTrojan.Generic.D16B2A
MicrosoftTrojan:Win32/Zombie!pz
VaristW32/S-5a8d2096!Eldorado
ALYacTrojan.GenericKDZ.92970
MAXmalware (ai score=89)
TrendMicro-HouseCallTROJ_GEN.R03BH01KM23
RisingTrojan.Generic@AI.100 (RDML:wPCiOlcC+B9Pzcfud+sRdg)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Shohdi.B!tr
DeepInstinctMALICIOUS

How to remove Trojan:Win32/Zombie!pz?

Trojan:Win32/Zombie!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment