Trojan

Trojan:Win32/Zombie!pz removal guide

Malware Removal

The Trojan:Win32/Zombie!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Zombie!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Zombie!pz?


File Info:

name: A595E85FCB0DB5EA639C.mlw
path: /opt/CAPEv2/storage/binaries/00072aa44211ca8a9ef6cafc4c2a3537a11773200562c57bbb2299ce7ee9ed4b
crc32: 4741B15C
md5: a595e85fcb0db5ea639c8ce5d79fc89e
sha1: 3025df467c53470e99e2a8caa43bae7e92113f98
sha256: 00072aa44211ca8a9ef6cafc4c2a3537a11773200562c57bbb2299ce7ee9ed4b
sha512: 8fb929b8deccd84665bad08e7953a6cd8434636b77a45b78c977f607e608c84475fde34d28866f038ddeb07abda084d80a658feef1204af2ff9b222cc8486f1f
ssdeep: 1536:6X0aX09rDVMFPK6IeKWfMbWRNI/ax0iPV+asNy07n9xV5MaCf2JzwPPoOCfNKjfP:mlCKPnIeKI+WRNI/CAaaV5M2XfWP
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D354C51E0F99B475E36205BDDA03B18FEC068E03B9BFCEB79831B4615463DB06669213
sha3_384: d3f0eec4fb7bef061458dc2650c11b83695e0071590a3448a2fe97b108088b616d483b0dd6a19f1735f426415ff3f661
ep_bytes: 00000000000000000000136000000000
timestamp: 2014-04-29 18:27:40

Version Info:

0: [No Data]

Trojan:Win32/Zombie!pz also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.92970
FireEyeTrojan.GenericKDZ.92970
SkyhighBehavesLike.Win32.Generic.dz
McAfeeArtemis!A595E85FCB0D
VIPRETrojan.GenericKDZ.92970
SangforSuspicious.Win32.Save.a
ArcabitTrojan.Generic.D16B2A
ClamAVWin.Malware.Lazy-9954277-0
BitDefenderTrojan.GenericKDZ.92970
SUPERAntiSpywareTrojan.Agent/Gen-Crypt
ZillyaTrojan.Cosmu.Win32.152467
EmsisoftTrojan.GenericKDZ.92970 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Cosmu.atj
GoogleDetected
VaristW32/S-5a8d2096!Eldorado
Antiy-AVLGrayWare/Win32.Tampering.27230
MicrosoftTrojan:Win32/Zombie!pz
GDataTrojan.GenericKDZ.92970
CynetMalicious (score: 100)
Acronissuspicious
ALYacTrojan.GenericKDZ.92970
MAXmalware (ai score=88)
RisingTrojan.Generic@AI.100 (RDML:WOnmfOjv6ufdOQeQvJNc/Q)
IkarusTrojan.Crypt
FortinetW32/Shohdi.B!tr
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Trojan:Win32/Zombie!pz?

Trojan:Win32/Zombie!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment