Trojan

Trojan:Win32/Zombie!pz removal guide

Malware Removal

The Trojan:Win32/Zombie!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Zombie!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Zombie!pz?


File Info:

name: 5E55EC4A87AB91943BB6.mlw
path: /opt/CAPEv2/storage/binaries/0553f252f0ee525428b9004b7ccadb44377c540a1e244fa8a079043c9e983b69
crc32: 73A93B38
md5: 5e55ec4a87ab91943bb61a5dadc21cea
sha1: d514e07dafb1686dcc975ae34fe1cd074b2ae20a
sha256: 0553f252f0ee525428b9004b7ccadb44377c540a1e244fa8a079043c9e983b69
sha512: 9331e89a628feef3411724b62b6fcc0caf8219530848bb73ce8880cac59296e4a27bf1f2f2d7b3f383a646463f3f508480772d7dfb63b31d0d5f4681baf242af
ssdeep: 768:qKVeIuKVeIkSoC7SFC7SgXUdkRSRSVRZVZjIoI4HXUdkRSRSVRZVZjIoI4/1kw1J:ESjXGkR2SfXGkR2SB
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CE04C683AED5D8D6CB745ABFD4A9328D282773B373E6EE7A5953B00E4450F305982053
sha3_384: 8f345c24bc42d53ac8e1e21a76d327de90dc2a818a5e815e8637b1c7f2727c4fa0eb4c8879c097cb8954d0fc07e1312c
ep_bytes: 00000000000000000000136000000000
timestamp: 2014-04-29 18:27:40

Version Info:

0: [No Data]

Trojan:Win32/Zombie!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.92970
ClamAVWin.Malware.Lazy-9954277-0
FireEyeTrojan.GenericKDZ.92970
SkyhighBehavesLike.Win32.Generic.cz
ALYacTrojan.GenericKDZ.92970
ZillyaTrojan.Cosmu.Win32.152467
SangforSuspicious.Win32.Save.a
CynetMalicious (score: 100)
BitDefenderTrojan.GenericKDZ.92970
EmsisoftTrojan.GenericKDZ.92970 (B)
VIPRETrojan.GenericKDZ.92970
IkarusTrojan.Crypt
GDataTrojan.GenericKDZ.92970
JiangminTrojan.Cosmu.atj
GoogleDetected
Antiy-AVLGrayWare/Win32.Tampering.27230
ArcabitTrojan.Generic.D16B2A
MicrosoftTrojan:Win32/Zombie!pz
VaristW32/S-5a8d2096!Eldorado
McAfeeArtemis!5E55EC4A87AB
MAXmalware (ai score=88)
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R002H09HC23
RisingTrojan.Generic@AI.100 (RDML:u+eRAgXFqTURHj6yMv3sEQ)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Shohdi.B!tr
DeepInstinctMALICIOUS

How to remove Trojan:Win32/Zombie!pz?

Trojan:Win32/Zombie!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment