Worm

Worm:Win32/Soltern!pz removal tips

Malware Removal

The Worm:Win32/Soltern!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm:Win32/Soltern!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Creates a copy of itself

How to determine Worm:Win32/Soltern!pz?


File Info:

name: 90EEF04F5A11346052AA.mlw
path: /opt/CAPEv2/storage/binaries/677e9d05d754d8217ac8d4de26421e4101b486fc18ca1ef7215d7a70f45d3068
crc32: 37DB4949
md5: 90eef04f5a11346052aa37cdf1b385f0
sha1: cd44fe59817cce3b4b4fffebe920bdeb16ce4cdb
sha256: 677e9d05d754d8217ac8d4de26421e4101b486fc18ca1ef7215d7a70f45d3068
sha512: d95939013211fcda6ad2731bcd88ada41bc3fb7e034f05606a0ad2e5dd262ada9df83b92a114bf2ab6a25ed5ee89fe6708df41ad4d9ab224dc63aed3354442f7
ssdeep: 1536:ncbqyEk65QiMa2Zi2tSVG4FnjJdLLAv6XH9TZ5nXYMpJ:cLSQilNIHujLLAv6XH91Rdn
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B0837C57BAE18571E0B60EB84C194182E53BBD302E74905BBBAE4E0E0D792C1985D7E7
sha3_384: 7b25ab86876698ad139bad95246bc6d4496412cef9d4a40e05683e959958c073c4ad1677ca151f76c4c2cfab583bade9
ep_bytes: 558bec83c4f4b804e24000e80479ffff
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Worm:Win32/Soltern!pz also known as:

BkavW32.AIDetectMalware
LionicWorm.Win32.Sytro.tpLS
MicroWorld-eScanGen:Trojan.P2P-Worm.fGY@aieFJ4g
CAT-QuickHealW32.Desfiro.MUE.A8
SkyhighBehavesLike.Win32.Sytro.mh
McAfeeW32/Sytro.worm.gen!p2p
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Trojan.P2P-Worm.fGY@aieFJ4g
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 00540e8a1 )
AlibabaWorm:Win32/Soltern.5977986e
K7GWTrojan ( 00540e8a1 )
CrowdStrikewin/malicious_confidence_100% (W)
BaiduWin32.Trojan.Agent.aaw
VirITWorm.Win32.Soltern.AB
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Soltern.NAA
APEXMalicious
TrendMicro-HouseCallWORM_SYTRO.L
ClamAVWin.Worm.Soltern-1
KasperskyP2P-Worm.Win32.Sytro.l
BitDefenderGen:Trojan.P2P-Worm.fGY@aieFJ4g
NANO-AntivirusTrojan.Win32.Sytro.fybz
AvastWin32:Delf-UDU [Trj]
TencentP2P-worm.Win32.Sytro.ta
EmsisoftGen:Trojan.P2P-Worm.fGY@aieFJ4g (B)
F-SecureDropper.DR/Delphi.Gen
DrWebWin32.HLLW.Sytro.31
ZillyaWorm.Sytro.Win32.7
TrendMicroWORM_SYTRO.L
FireEyeGeneric.mg.90eef04f5a113460
SophosTroj/Agent-BFWG
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=87)
JiangminWorm/P2P.Sytro.l
GoogleDetected
AviraDR/Delphi.Gen
VaristW32/Trojan.FWG.gen!Eldorado
Antiy-AVLWorm[P2P]/Win32.Sytro
Kingsoftmalware.kb.a.1000
MicrosoftWorm:Win32/Soltern!pz
XcitiumWorm.Win32.Soltern.GG@7920il
ArcabitTrojan.P2P-Worm.E33C70
ZoneAlarmP2P-Worm.Win32.Sytro.l
GDataWin32.Worm.Soltern.A
CynetMalicious (score: 100)
AhnLab-V3Worm/Win32.Sytro.R107089
Acronissuspicious
VBA32BScope.TrojanDropper.Delf
ALYacGen:Trojan.P2P-Worm.fGY@aieFJ4g
TACHYONWorm/W32.DP-Sytro.Zen
Cylanceunsafe
PandaTrj/Genetic.gen
RisingWorm.Soltern!1.A328 (CLASSIC)
YandexTrojan.GenAsa!ejUOLTc5XdM
IkarusVirus.Win32.Sytro
MaxSecureWorm.Sytro.k
FortinetW32/Delf.E867!tr
BitDefenderThetaAI:Packer.0DC3CBB521
AVGWin32:Delf-UDU [Trj]
DeepInstinctMALICIOUS
alibabacloudWorm:Win/Sytro.5cd40880

How to remove Worm:Win32/Soltern!pz?

Worm:Win32/Soltern!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment