Trojan

About “Win32/TrojanDownloader.Zlob_AGen.B” infection

Malware Removal

The Win32/TrojanDownloader.Zlob_AGen.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/TrojanDownloader.Zlob_AGen.B virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Win32/TrojanDownloader.Zlob_AGen.B?


File Info:

name: 7FFA1E60F32E0767D376.mlw
path: /opt/CAPEv2/storage/binaries/a7e36acbf5efe788a5c100b2682d1935028f0e54290a864d915408c3a09b8139
crc32: 76F10991
md5: 7ffa1e60f32e0767d376b71a86c099b4
sha1: 46e636a4b647f95ab3fd04f468b78a84cba55ee5
sha256: a7e36acbf5efe788a5c100b2682d1935028f0e54290a864d915408c3a09b8139
sha512: 4a2feddaa788cd7c02ccde8a1e58855508f43e25e07e902b40f3efaaf145a2ca652947ba9c738296c7d2df86dad466774aa97b8247e3f24b87bbfa3c63e56cfb
ssdeep: 1536:qb+Cd4Q3ece1YMugSs8/5kvJzhw+r+lmc4Csgh9vGrt7JrlO/TBpd:qbB4Q3gY/Xkv5hwihyvatRl2F
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18F838E63B88544B7D693013115A46B34F7FF6B386935DCA7CB1819C6AC794C2B23B2CA
sha3_384: 17904bf193eaafa94f54e79cde7a2975876ed24bd144c08739af729ca1dbbad540940b0af6c7017e2df67de9b1e22e9c
ep_bytes: 8536a036bd36d636e5360c372e373f37
timestamp: 2007-10-18 14:16:12

Version Info:

0: [No Data]

Win32/TrojanDownloader.Zlob_AGen.B also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.DNSChanger.kZ16
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Heur.Conjar.9
ClamAVWin.Malware.Conjar-9957981-0
FireEyeGeneric.mg.7ffa1e60f32e0767
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Heur.Conjar.9
SangforSuspicious.Win32.Save.a
AlibabaTrojan:Win32/DNSChanger.7adcaf74
Cybereasonmalicious.0f32e0
BitDefenderThetaGen:NN.ZexaF.36250.feX@ayc4eho
CyrenW32/Trojan2.NNZ
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDownloader.Zlob_AGen.B
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.DNSChanger.acs
BitDefenderGen:Heur.Conjar.9
SUPERAntiSpywareTrojan.Unclassified/K-Series-A
AvastWin32:DNSChanger-TL [Trj]
TencentMalware.Win32.Gencirc.13d11fbb
EmsisoftGen:Heur.Conjar.9 (B)
F-SecureTrojan.TR/Patched.Ren.Gen
TrendMicroTROJ_GEN.R03BC0PFE23
McAfee-GW-EditionBehavesLike.Win32.RAHack.mh
Trapminemalicious.high.ml.score
SophosMal/Generic-S
IkarusTrojan.Win32.DNSChanger
GDataWin32.Trojan.Agent.E7GTY6
AviraTR/Patched.Ren.Gen
Antiy-AVLTrojan/Win32.DNSChanger
XcitiumTrojWare.Win32.DNSChanger.ACS@k1361
ArcabitTrojan.Conjar.9
ZoneAlarmTrojan.Win32.DNSChanger.acs
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
McAfeegeneric!bg.ema
MAXmalware (ai score=84)
VBA32suspected of Trojan-Downloader.Agent.31
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R03BC0PFE23
RisingTrojan.Zlob!1.A07E (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetJS/DNSChanger.APN!tr
AVGWin32:DNSChanger-TL [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32/TrojanDownloader.Zlob_AGen.B?

Win32/TrojanDownloader.Zlob_AGen.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment