Trojan

Trojan:Win32/Zombie!pz information

Malware Removal

The Trojan:Win32/Zombie!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Zombie!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Zombie!pz?


File Info:

name: 574C136E0AB7721453E9.mlw
path: /opt/CAPEv2/storage/binaries/1d7856b1f0e7605a8c31706383cac99ef5b1c621fec9a159f18f5413964d4f4f
crc32: 297FDB39
md5: 574c136e0ab7721453e901ceed3f3a42
sha1: 8320f5b62df2e627d162bea112ae6c7b2ad3100e
sha256: 1d7856b1f0e7605a8c31706383cac99ef5b1c621fec9a159f18f5413964d4f4f
sha512: 2b21d1b7296f166ccd68f59630e31965d6d99a7602cf76df54313d61446c04ab90d4e0c4e2bbf73295e952510256880e46fd0948074b811ad18f6a9834125e43
ssdeep: 768:qKVeIuKVeIaCgx+qsaCgx+qswPNPsvThLXJ4FhLXJ4eJ5+vo/ioSBJ5+vo/ioSz:6X0aX0wPNPsv0yj4z
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EB1408078DD6B9DBD32783FA626637882D65EAEB3752CDB51AC2F4B20410F306583117
sha3_384: c449f1b3a16dbadf0cc9c3145ee4f2355d3e4a22f8a41d905662373fc860d04a81c293f8b29de7f8d2facae5137c1dc8
ep_bytes: 00000000000000000000136000000000
timestamp: 2014-04-29 18:27:40

Version Info:

0: [No Data]

Trojan:Win32/Zombie!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Zombie.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.92970
ClamAVWin.Malware.Lazy-9954277-0
FireEyeTrojan.GenericKDZ.92970
SkyhighBehavesLike.Win32.Generic.cz
McAfeeArtemis!574C136E0AB7
ZillyaTrojan.Cosmu.Win32.152467
SangforSuspicious.Win32.Save.a
AlibabaTrojan:Win32/Zombie.858fb6da
SymantecRansom.Zombie
CynetMalicious (score: 100)
BitDefenderTrojan.GenericKDZ.92970
RisingTrojan.Generic@AI.100 (RDML:zIt/qAooS+V76YsV7nXprQ)
EmsisoftTrojan.GenericKDZ.92970 (B)
VIPRETrojan.GenericKDZ.92970
TrendMicroTROJ_GEN.R002C0DL223
SophosMal/Generic-S
IkarusTrojan.Crypt
GDataTrojan.GenericKDZ.92970
JiangminTrojan.Cosmu.atj
GoogleDetected
MAXmalware (ai score=81)
Antiy-AVLGrayWare/Win32.Tampering.27230
ArcabitTrojan.Generic.D16B2A
MicrosoftTrojan:Win32/Zombie!pz
VaristW32/S-5a8d2096!Eldorado
ALYacTrojan.GenericKDZ.92970
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R002C0DL223
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Shohdi.B!tr
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Trojan:Win32/Zombie!pz?

Trojan:Win32/Zombie!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment