Trojan

Trojan:Win32/Zombie!pz removal guide

Malware Removal

The Trojan:Win32/Zombie!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Zombie!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Zombie!pz?


File Info:

name: BC3618244668A2FDC2AF.mlw
path: /opt/CAPEv2/storage/binaries/2e10b84dd1f8257153163cedbb17c61348728e4f86b4ee33357d88210889e95a
crc32: A2551F6A
md5: bc3618244668a2fdc2afedca13801b72
sha1: 578fecb89194cff65c372a67096e7478e62bc403
sha256: 2e10b84dd1f8257153163cedbb17c61348728e4f86b4ee33357d88210889e95a
sha512: e87e6ccc8e74d68198223eb49848818a179d6f0851e42b2b9d0932f02cbd45ccf45d5e7711734ed0f19ae3956f63b8221fbcee39b838d2323ed0565bc323848c
ssdeep: 384:E0GRKkFyeItGRKkFyeIZ2mmCgx+cLsaCgx+cLswPNPNM4Hd6F:qKVeIuKVeIaCgx+qsaCgx+qswPNPE
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FD04E6178EE5BA9BC32392FF269A3B482C69EEC77352DEB42D5271724411F3069D2053
sha3_384: 6304f65dc5a387df4ecc936d1fec2b20a0d83e636c6f0b3bfdae8ea1d61a95cd800fc339fca0db411c7bca31194c4c1a
ep_bytes: 00000000000000000000136000000000
timestamp: 2014-04-29 18:27:40

Version Info:

0: [No Data]

Trojan:Win32/Zombie!pz also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.92970
FireEyeGeneric.mg.bc3618244668a2fd
SkyhighArtemis!Trojan
McAfeeArtemis!BC3618244668
VIPRETrojan.GenericKDZ.92970
SangforSuspicious.Win32.Save.a
CrowdStrikewin/grayware_confidence_60% (D)
CynetMalicious (score: 100)
ClamAVWin.Malware.Lazy-9954277-0
BitDefenderTrojan.GenericKDZ.92970
EmsisoftTrojan.GenericKDZ.92970 (B)
ZillyaTrojan.Cosmu.Win32.152467
SophosGeneric ML PUA (PUA)
IkarusTrojan.Crypt
JiangminTrojan.Cosmu.atj
VaristW32/S-5a8d2096!Eldorado
Antiy-AVLGrayWare/Win32.Tampering.27230
MicrosoftTrojan:Win32/Zombie!pz
ArcabitTrojan.Generic.D16B2A
GDataTrojan.GenericKDZ.92970
GoogleDetected
ALYacTrojan.GenericKDZ.92970
MAXmalware (ai score=83)
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R03BH01KQ23
RisingTrojan.Generic@AI.100 (RDML:pVIJkFjtDzWgOPLUMYdXCw)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Shohdi.B!tr

How to remove Trojan:Win32/Zombie!pz?

Trojan:Win32/Zombie!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment