Malware

Exploit.cve20211675 removal

Malware Removal

The Exploit.cve20211675 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Exploit.cve20211675 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Exploit.cve20211675?


File Info:

name: 87E92C7AE6960F5F4CB6.mlw
path: /opt/CAPEv2/storage/binaries/05ad1aad9b03e87bea379d6dfe5d6c9c0f3653355be491c3df669dfd90ef68cd
crc32: A167993A
md5: 87e92c7ae6960f5f4cb6eeb662d5b244
sha1: 51957ec3c1d85ade4c0ea62059579d4b2e05e9ca
sha256: 05ad1aad9b03e87bea379d6dfe5d6c9c0f3653355be491c3df669dfd90ef68cd
sha512: fae7c78e5d33d11b7de235bf8698c75ca74c741f28185cf542672fb3709423fe6cb5070db35161567a894db819bf84ff59adfb2e004a0921da2653e3e27e6c83
ssdeep: 384:sx3n8IYntR75jjR1JQPyxnzEEsGgVHzH:sdCntJ5jjR3XKzH
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T13952D625FBD40729FAFF4B758DB2822013B4FB826D22D75E11D4514F4C3A3998922B32
sha3_384: 1459ff00aab19585ab2d6cc8bbbffb4c2a0a8e114a446f8b157e2345f05721b10b3b739e240b2b88137c33055f32c677
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-12-06 16:16:03

Version Info:

Translation: 0x0000 0x04b0
Comments: Cube0x0
CompanyName: Cube0x0
FileDescription: SharpPrintNightmare
FileVersion: 1.0.0.0
InternalName: SharpPrintNightmare.exe
LegalCopyright: Copyright © 2021
LegalTrademarks: Cube0x0
OriginalFilename: SharpPrintNightmare.exe
ProductName: SharpPrintNightmare
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Exploit.cve20211675 also known as:

Elasticmalicious (high confidence)
ALYacIL:Trojan.MSILZilla.11651
MalwarebytesExploit.cve20211675
BitDefenderIL:Trojan.MSILZilla.11651
ESET-NOD32a variant of Win64/Exploit.CVE-2021-1675.F
AvastWin32:CVE-2021-1675-H [Expl]
KasperskyHEUR:Exploit.MSIL.CVE-2021-34527.a
MicroWorld-eScanIL:Trojan.MSILZilla.11651
Ad-AwareIL:Trojan.MSILZilla.11651
SophosExp/20211675-B
DrWebExploit.CVE-2021-1675NET.1
FireEyeIL:Trojan.MSILZilla.11651
EmsisoftIL:Trojan.MSILZilla.11651 (B)
GDataMSIL.Exploit.CVE-2021-1675.D
MAXmalware (ai score=83)
ArcabitIL:Trojan.MSILZilla.D2D83
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
AhnLab-V3Exploit/Win.CVE-2021-1675.C4805252
FortinetMSIL/CVE_2021_34527.B!exploit
AVGWin32:CVE-2021-1675-H [Expl]
MaxSecureTrojan.Malware.300983.susgen

How to remove Exploit.cve20211675?

Exploit.cve20211675 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment