Threat Database Stealers Trojan.Stealer.HZ

Trojan.Stealer.HZ

By CagedTech in Stealers, Trojans

Threat Scorecard

Popularity Rank: 7,107
Threat Level: 80 % (High)
Infected Computers: 116
First Seen: March 25, 2023
Last Seen: July 1, 2026
OS(es) Affected: Windows

The detection of Trojan.Stealer.HZ on your system indicates a potential security threat that requires immediate attention. This type of malware is designed to compromise your computer's security and steal sensitive information. It is essential to understand the nature of this threat and take prompt action to remove it and prevent further damage.

What Is Trojan.Stealer.HZ?

Trojan.Stealer.HZ is a type of Trojan horse malware that can infect your computer without your knowledge or consent. Trojans are malicious programs that disguise themselves as legitimate software, allowing them to bypass security measures and gain unauthorized access to your system. The ".Stealer" part of the name suggests that this particular Trojan is designed to steal sensitive information, such as login credentials, financial data, or personal details.

How Trojan.Stealer.HZ Operates

Once installed on your system, Trojan.Stealer.HZ can operate in the background, collecting and transmitting sensitive information to its creators or other malicious parties. It may also download and install additional malware, create backdoors for remote access, or modify system settings to weaken security. The exact mechanisms used by Trojan.Stealer.HZ can vary, but its primary goal is to compromise your system's security and exploit your personal data for malicious purposes.

Symptoms of Infection

Identifying a Trojan.Stealer.HZ infection can be challenging, as it may not exhibit obvious symptoms. However, you may notice unusual system behavior, such as slow performance, frequent crashes, or unfamiliar programs running in the background. You may also receive unexpected pop-ups, experience unusual network activity, or find suspicious files or folders on your system. If you suspect that your system has been infected with Trojan.Stealer.HZ, it is crucial to take immediate action to remove the threat.

How to Remove Trojan.Stealer.HZ

  1. Boot your system in Safe Mode with Networking to prevent the malware from loading and to allow for easier removal.
  2. Download and install a reputable anti-malware tool, such as SpyHunter, and perform a full system scan to detect and remove Trojan.Stealer.HZ and any related malware.
  3. Uninstall any suspicious programs or applications that may be associated with the malware.
  4. Reset your web browsers, including Chrome, Firefox, and Edge, to their default settings to remove any malicious extensions or add-ons.
  5. Reboot your system and perform another full scan with your anti-malware tool to ensure that the threat has been completely removed.

Conclusion

Removing Trojan.Stealer.HZ from your system requires careful attention to detail and a thorough understanding of the malware's characteristics. By following the steps outlined above and using reputable anti-malware tools, you can help ensure the complete removal of the threat and prevent further damage to your system. Remember to stay vigilant and take proactive measures to protect your system from future malware infections, such as keeping your operating system and software up to date, using strong passwords, and avoiding suspicious downloads or email attachments.

Analysis Report

General information

Family Name: Trojan.Stealer.HZ
Signature status: No Signature

Known Samples

MD5: 7b702873891d7b781979216ac38d580b
SHA1: f3ad95b7c192c444803dbd70716248ff1ee1e0df
SHA256: 35D6C1D66E957F1901854835AB8716537058D2743CC8472065FB17CA643C0801
File Size: 991.23 KB, 991232 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have resources
  • File doesn't have security information
  • File has TLS information
  • File is 32-bit executable
  • File is console application (IMAGE_SUBSYSTEM_WINDOWS_CUI)
  • File is either console or GUI application
Show More
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Traits

  • No Version Info
  • x86

Block Information

Total Blocks: 5,375
Potentially Malicious Blocks: 270
Whitelisted Blocks: 4,725
Unknown Blocks: 380

Visual Map

0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? ? x ? ? ? 0 ? ? ? 0 ? ? x ? ? 0 0 0 ? ? ? ? 0 ? ? ? 0 ? ? 0 ? ? ? ? ? 0 ? ? ? ? 0 ? ? ? 0 0 0 0 0 0 0 1 0 ? 0 ? 0 0 x x 0 ? 0 ? 0 x 0 ? 0 0 x ? ? 0 0 0 ? 0 ? ? 0 ? 0 0 0 ? x ? 0 x ? 0 0 0 0 ? 0 x 1 1 ? ? ? ? ? ? ? ? 0 ? ? x 0 0 0 0 0 0 1 0 0 0 ? ? x 0 0 ? ? 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 x 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 x ? ? x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 ? ? 0 ? 1 0 0 1 1 0 0 0 0 1 1 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 x x 0 0 0 0 0 0 0 ? 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? x ? 0 0 0 0 0 0 ? 0 ? ? 0 0 0 ? ? 0 0 ? 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? ? ? ? ? ? ? 0 0 0 ? 0 0 ? x ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 ? ? 0 ? ? 0 0 0 ? ? ? ? ? 0 ? ? ? ? ? ? 0 0 ? ? x 0 0 0 0 0 x 0 0 ? 0 ? ? ? 0 ? 0 ? ? 0 ? ? 0 0 0 ? ? ? ? 0 0 0 ? ? ? 0 0 ? ? 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 x 0 0 0 0 ? x 0 x x x 0 0 0 0 0 ? ? ? ? x 0 0 0 ? 0 ? 0 0 ? 0 0 ? 0 ? ? ? 0 x 0 ? x x x x x ? x 0 0 x 0 0 x x x x x x x 0 0 0 0 x ? 0 ? 0 ? ? ? ? ? ? 0 ? 0 ? 0 0 ? x ? ? 0 0 0 ? ? x 0 0 0 0 0 0 ? 0 0 x 0 x 0 0 0 0 0 0 0 ? ? 0 0 1 1 1 1 0 0 0 ? 1 1 1 1 0 ? ? ? ? x ? x 0 ? ? 0 ? ? 0 0 0 0 0 ? ? x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 ? ? 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 ? 0 0 x x x x x x 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 x x 0 0 0 0 x 0 0 0 0 0 0 0 ? 0 0 0 0 0 ? 0 ? 0 ? ? 0 0 0 0 0 0 0 ? ? 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 ? 0 0 0 0 0 ? ? ? 0 ? 0 0 0 0 0 0 0 x x x x 0 0 0 ? 0 ? x x x x x 0 x 0 x 0 0 0 x 0 ? ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 1 0 0 ? 0 1 0 0 0 1 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 x 0 x 0 0 x 0 0 x 0 ? x 0 0 0 0 1 0 0 0 0 x 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 ? ? 0 0 0 0 0 0 0 0 0 x 0 x 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 ? ? 0 0 0 0 0 ? 0 ? ? ? 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 x 0 ? 0 0 0 0 ? 0 0 ? 0 ? 0 0 0 ? 0 0 0 0 0 0 0 0 ? ? 0 ? 0 0 0 0 ? 0 0 0 ? ? 0 0 0
... Data truncated
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Stealer.HZ

Trending

Most Viewed

Loading...