Trojan

Trojan:Win32/Zombie!pz removal guide

Malware Removal

The Trojan:Win32/Zombie!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Zombie!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Zombie!pz?


File Info:

name: D4BC60D07D3AFCA077E7.mlw
path: /opt/CAPEv2/storage/binaries/4d6a77a8bf0e9fe2584ac425e4cc6575bb8a7175674336df4eed358758662050
crc32: 3AB2FBDA
md5: d4bc60d07d3afca077e7acbcf170bc43
sha1: 8a721ea113fe8421f730805b07e3c91aef5f86f6
sha256: 4d6a77a8bf0e9fe2584ac425e4cc6575bb8a7175674336df4eed358758662050
sha512: 9b0362e4e82748b0b3c4ad6788a60dd775d1db7dedd8256ce667bd38673a897b68f8a62e61a561ef80efa26149fe1e6ec3f9235b552b83ac2260bdc08ce4ffc5
ssdeep: 384:E0GRKkFyeItGRKkFyeIZ2mmCgx+cLsaCgx+cLswPNPNM4HL1X:qKVeIuKVeIaCgx+qsaCgx+qswPNPz1X
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F704E6138DE9BA6BC32392FF255A3B542C69FEC73792EE741DA1B2624011E3065D3493
sha3_384: 419ba7ea0090ee1406ec55a25426c753787f7992e9ea0b5dc7fb0714c85320f89b0fa9dcdb8d426c808cba6e313931cf
ep_bytes: 00000000000000000000136000000000
timestamp: 2014-04-29 18:27:40

Version Info:

0: [No Data]

Trojan:Win32/Zombie!pz also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanTrojan.GenericKDZ.92970
FireEyeTrojan.GenericKDZ.92970
SkyhighBehavesLike.Win32.Generic.cz
McAfeeArtemis!D4BC60D07D3A
ZillyaTrojan.Cosmu.Win32.152467
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005b3dba1 )
AlibabaTrojan:Win32/Zombie.858fb6da
K7GWTrojan ( 005b3dba1 )
CrowdStrikewin/malicious_confidence_60% (D)
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
BitDefenderTrojan.GenericKDZ.92970
EmsisoftTrojan.GenericKDZ.92970 (B)
VIPRETrojan.GenericKDZ.92970
SophosMal/Generic-S
JiangminTrojan.Cosmu.atj
VaristW32/S-5a8d2096!Eldorado
MAXmalware (ai score=84)
Antiy-AVLGrayWare/Win32.Tampering.27230
MicrosoftTrojan:Win32/Zombie!pz
ArcabitTrojan.Generic.D16B2A
GDataTrojan.GenericKDZ.92970
GoogleDetected
ALYacTrojan.GenericKDZ.92970
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R03BH01KC23
RisingTrojan.Generic@AI.100 (RDML:kljLJCbImP6JcqlEjJxgLg)
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Shohdi.B!tr
DeepInstinctMALICIOUS
alibabacloudTrojan:Win/Zombie.Gen

How to remove Trojan:Win32/Zombie!pz?

Trojan:Win32/Zombie!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment