Malware

Win32:Pixoliz-AN [Trj] information

Malware Removal

The Win32:Pixoliz-AN [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:Pixoliz-AN [Trj] virus can do?

  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Uses Windows utilities to create a scheduled task
  • Deletes executed files from disk
  • Anomalous binary characteristics

How to determine Win32:Pixoliz-AN [Trj]?


File Info:

name: 53E060C23E1B0F341DBA.mlw
path: /opt/CAPEv2/storage/binaries/d3cab691a7ec6a21a393a5d9b2f253a74ff41b7a3f42f6d5c7acbef9ff404937
crc32: 65CE7FCF
md5: 53e060c23e1b0f341dbab8242164c47d
sha1: 7f5c3325dff67785accc78a551127301777519e3
sha256: d3cab691a7ec6a21a393a5d9b2f253a74ff41b7a3f42f6d5c7acbef9ff404937
sha512: 1382d9fbdfa7b3626ca912e2d882050a1bca194d1e6bdf1fcf0a8e3fae72cd2d2bd5caf94862267ad8ff3a04a66226229b4aaa4cf2d3ac33325ac333de4521e6
ssdeep: 6144:k6bhNflfEK4UJx1SKxJ+61b88bkXkECzJLaQVbU5:Dbh9lfEjUJx1SKxs61bAklJLJbU5
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18754BF42FE9442B3C0A303712CE4E59E372DBCA5B7A692E73110BF6F147A5D49A34399
sha3_384: 16254d8d7d4405759b25c190fcb18bd555b3e5fdd4d8328c4508d5006b24d6e39cfb2f14e826b9246b61a1f7d757779b
ep_bytes: 60b8000000008a900010400080eadd88
timestamp: 2011-07-11 06:27:43

Version Info:

CompanyName: TODO:
FileDescription: TODO:
FileVersion: 1.0.0.1
InternalName: AdwTest.exe
LegalCopyright: TODO: (c) . All rights reserved.
OriginalFilename: AdwTest.exe
ProductName: TODO:
ProductVersion: 1.0.0.1
Translation: 0x0409 0x04e4

Win32:Pixoliz-AN [Trj] also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGen:Variant.Ransom.Babuk.69
FireEyeGeneric.mg.53e060c23e1b0f34
CAT-QuickHealTrojan.GenericRI.S30174122
SkyhighBehavesLike.Win32.Generic.dh
McAfeeGenericRXOB-DF!53E060C23E1B
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.AgentGen.Win32.95
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005ac2dd1 )
K7GWTrojan ( 004b494b1 )
CrowdStrikewin/malicious_confidence_100% (D)
VirITTrojan.Win32.MulDrop5.CKMW
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Agent.WTK
APEXMalicious
ClamAVWin.Malware.Razy-9759519-0
KasperskyHEUR:Trojan.Win32.Nobady.pef
BitDefenderGen:Variant.Ransom.Babuk.69
NANO-AntivirusTrojan.Win32.Drop.dopsvq
SUPERAntiSpywareTrojan.Agent/Gen-Crypt
AvastWin32:Pixoliz-AN [Trj]
TencentTrojan.Win32.Agent.zl
SophosMal/Agent-AWE
F-SecureHeuristic.HEUR/AGEN.1365521
DrWebTrojan.MulDrop5.42246
VIPREGen:Variant.Ransom.Babuk.69
EmsisoftGen:Variant.Ransom.Babuk.69 (B)
IkarusTrojan.Win32.Aenjaris
GDataWin32.Trojan.BadJoke.J
GoogleDetected
AviraHEUR/AGEN.1365521
VaristW32/Agent.GHH.gen!Eldorado
Antiy-AVLTrojan/Win32.Agent.wtk
Kingsoftmalware.kb.a.996
XcitiumTrojWare.Win32.Aenjaris.ABC@8hq1l4
ArcabitTrojan.Ransom.Babuk.69
ZoneAlarmHEUR:Trojan.Win32.Nobady.pef
MicrosoftTrojan:Win32/Aenjaris.AL!bit
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.DF.R566591
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.36680.sK3@aShChWpi
MAXmalware (ai score=84)
VBA32SScope.Malware-Cryptor.Aenjaris
Cylanceunsafe
PandaTrj/Genetic.gen
RisingTrojan.Agent!1.A728 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.WTK!tr
AVGWin32:Pixoliz-AN [Trj]
Cybereasonmalicious.5dff67
DeepInstinctMALICIOUS

How to remove Win32:Pixoliz-AN [Trj]?

Win32:Pixoliz-AN [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment