Malware

About “Heur.Mimikatz.1 (B)” infection

Malware Removal

The Heur.Mimikatz.1 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Heur.Mimikatz.1 (B) virus can do?

    How to determine Heur.Mimikatz.1 (B)?

    
    

    File Info:

    crc32: 2C85102F
    md5: 735c3138ba25fd1346cc42648fe41a21
    name: 735C3138BA25FD1346CC42648FE41A21.mlw
    sha1: 0d825d4950bc25aadc986bc3981aeaaddb4958aa
    sha256: a276dd74755ae6f45572056deddfdbe7f93cc94b6e4af8a86581636f0fd7bc6e
    sha512: c81adda2abca3fc8dc6d72cc348a5cf0e7cb1fdc597a3b6aa12501a442e219a004f4d6076c3a4609667482c8099b23d9dc4934e2596f7299b3736439f664d96b
    ssdeep: 12288:yfx+k6hHjSqb7DQkBhM27LT9faDevb1/FmYmNzgfAd6MsFEQzVNMt:yfsk6hmqHE8hTi0bExgfAd6F9p
    type: PE32+ executable (console) x86-64, for MS Windows

    Version Info:

    LegalCopyright: Copyright (c) 2007 - 2019 gentilkiwi (Benjamin DELPY)
    InternalName: mimikatz
    FileVersion: 2.2.0.0
    CompanyName: gentilkiwi (Benjamin DELPY)
    PrivateBuild: Build with love for POC only
    ProductName: mimikatz
    SpecialBuild: :)
    ProductVersion: 2.2.0.0
    FileDescription: mimikatz for Windows
    OriginalFilename: mimikatz.exe
    Translation: 0x0409 0x04b0

    Heur.Mimikatz.1 (B) also known as:

    K7AntiVirusHacktool ( 0043c1591 )
    MicroWorld-eScanGen:Heur.Mimikatz.1
    ALYacGen:Heur.Mimikatz.1
    SangforMalware
    CrowdStrikewin/malicious_confidence_90% (D)
    K7GWHacktool ( 0043c1591 )
    Cybereasonmalicious.8ba25f
    TrendMicroHKTL_MIMIKATZ64
    CyrenW64/S-b61adc75!Eldorado
    SymantecHacktool.Mimikatz
    ESET-NOD32a variant of Win64/Riskware.Mimikatz.CB
    APEXMalicious
    AvastWin64:Malware-gen
    ClamAVWin.Trojan.Mimikatz-6466236-0
    GDataGen:Heur.Mimikatz.1
    KasperskyHEUR:Trojan-PSW.Win64.Mimikatz.gen
    BitDefenderGen:Heur.Mimikatz.1
    TencentWin64.Risk.Riskware.Afro
    Ad-AwareGen:Heur.Mimikatz.1
    SophosTroj/Mimkatz-T
    Invinceaheuristic
    Trapminesuspicious.low.ml.score
    FireEyeGeneric.mg.735c3138ba25fd13
    EmsisoftGen:Heur.Mimikatz.1 (B)
    SentinelOneDFI – Suspicious PE
    Endgamemalicious (high confidence)
    WebrootW32.Hacktool.Gen
    eGambithacktool.mimikatz
    Antiy-AVLHackTool/Win64.Mimikatz.a
    MicrosoftHackTool:Win32/Mimikatz.D
    JiangminTrojan.PSW.Mimikatz.bjz
    ArcabitTrojan.Mimikatz.1
    ZoneAlarmHEUR:Trojan-PSW.Win64.Mimikatz.gen
    AhnLab-V3Trojan/Win64.Mimikatz.R285461
    Acronissuspicious
    McAfeeHTool-MimiKatz!735C3138BA25
    MAXmalware (ai score=84)
    MalwarebytesHackTool.Mimikatz
    PandaHackingTool/Mimikatz
    TrendMicro-HouseCallHKTL_MIMIKATZ64
    RisingHackTool.Mimikatz!1.B3A8 (CLASSIC)
    IkarusHackTool.Mimikatz
    AVGWin64:Malware-gen
    Qihoo-360Win64/Trojan.PSW.a2b

    How to remove Heur.Mimikatz.1 (B)?

    Heur.Mimikatz.1 (B) removal tool
    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.

    About the author

    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Leave a Comment