Malware

About “W32/Trizt-Gen” infection

Malware Removal

The W32/Trizt-Gen is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What W32/Trizt-Gen virus can do?

  • HTTPS urls from behavior.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Creates a copy of itself
  • Attempts to modify or disable Security Center warnings

How to determine W32/Trizt-Gen?


File Info:

name: 75DFC4DC52F579837F93.mlw
path: /opt/CAPEv2/storage/binaries/7ec592753015dd17668c453e3a00e9eee421d0506d58aafb0a186be385b9510f
crc32: 83FC5714
md5: 75dfc4dc52f579837f93c07d89b044bf
sha1: e8d4917e10a473a5b72de49ce4ec4e577ad1d444
sha256: 7ec592753015dd17668c453e3a00e9eee421d0506d58aafb0a186be385b9510f
sha512: 3d4b408ea88ab552fef0b364fc2ba920754726f2769d05c819d37c92fbed0f72bfacedaaebe4034e26d44dac08da4d86fedbf0c75d3f85793da02904d4bb49a0
ssdeep: 1536:9ZLCZ9BFmav82a8ZGvlryApoBhAhLGkCF:feZUOjompB0GkCF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T170832901F590A07BF9EA85FAD2F64969582CBF75134948E39290295BD7203FEBC36037
sha3_384: 4a78647db060d8aeed196745cb4422f490f339c40627a0a6bab4faf59243a697abcbf911842dbf2d448b25ea3db7a98b
ep_bytes: 558bec81ecd00b000068d0070000ff15
timestamp: 2024-04-07 21:14:41

Version Info:

0: [No Data]

W32/Trizt-Gen also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Heur.Mint.Zard.39
SkyhighBehavesLike.Win32.Dropper.mh
McAfeePhorpiex!75DFC4DC52F5
MalwarebytesPhorpiex.Trojan.Bot.DDS
VIPREGen:Heur.Mint.Zard.39
SangforSuspicious.Win32.Save.ins
AlibabaWorm:Win32/Phorpiex.e20c112c
Cybereasonmalicious.c52f57
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Phorpiex.V
APEXMalicious
ClamAVWin.Malware.Phorpiex-10015790-0
KasperskyUDS:Trojan.Win32.Agent.gen
BitDefenderGen:Heur.Mint.Zard.39
AvastWin32:KadrBot [Trj]
TencentWin32.Trojan.Agent.Bujl
EmsisoftGen:Heur.Mint.Zard.39 (B)
F-SecureHeuristic.HEUR/AGEN.1366496
DrWebDLOADER.Trojan
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.75dfc4dc52f57983
SophosW32/Trizt-Gen
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=82)
GoogleDetected
AviraHEUR/AGEN.1366496
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Phorpiex.RA!MTB
ArcabitTrojan.Mint.Zard.39
ZoneAlarmUDS:Trojan.Win32.Agent.gen
GDataWin32.Trojan.Miner.E
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C4630408
BitDefenderThetaAI:Packer.D9BB39901E
VBA32BScope.Trojan.Bingoml
Cylanceunsafe
RisingWorm.Phorpiex!1.D985 (CLASSIC)
IkarusTrojan.Win32.Phorpiex
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Phorpiex.V!tr
AVGWin32:KadrBot [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove W32/Trizt-Gen?

W32/Trizt-Gen removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment