Categories: Malware

About “Heur.Mimikatz.1 (B)” infection

The Heur.Mimikatz.1 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Heur.Mimikatz.1 (B) virus can do?

    How to determine Heur.Mimikatz.1 (B)?

    
    

    File Info:

    crc32: 2C85102Fmd5: 735c3138ba25fd1346cc42648fe41a21name: 735C3138BA25FD1346CC42648FE41A21.mlwsha1: 0d825d4950bc25aadc986bc3981aeaaddb4958aasha256: a276dd74755ae6f45572056deddfdbe7f93cc94b6e4af8a86581636f0fd7bc6esha512: c81adda2abca3fc8dc6d72cc348a5cf0e7cb1fdc597a3b6aa12501a442e219a004f4d6076c3a4609667482c8099b23d9dc4934e2596f7299b3736439f664d96bssdeep: 12288:yfx+k6hHjSqb7DQkBhM27LT9faDevb1/FmYmNzgfAd6MsFEQzVNMt:yfsk6hmqHE8hTi0bExgfAd6F9ptype: PE32+ executable (console) x86-64, for MS Windows

    Version Info:

    LegalCopyright: Copyright (c) 2007 - 2019 gentilkiwi (Benjamin DELPY)InternalName: mimikatzFileVersion: 2.2.0.0CompanyName: gentilkiwi (Benjamin DELPY)PrivateBuild: Build with love for POC onlyProductName: mimikatzSpecialBuild: :)ProductVersion: 2.2.0.0FileDescription: mimikatz for WindowsOriginalFilename: mimikatz.exeTranslation: 0x0409 0x04b0

    Heur.Mimikatz.1 (B) also known as:

    K7AntiVirus Hacktool ( 0043c1591 )
    MicroWorld-eScan Gen:Heur.Mimikatz.1
    ALYac Gen:Heur.Mimikatz.1
    Sangfor Malware
    CrowdStrike win/malicious_confidence_90% (D)
    K7GW Hacktool ( 0043c1591 )
    Cybereason malicious.8ba25f
    TrendMicro HKTL_MIMIKATZ64
    Cyren W64/S-b61adc75!Eldorado
    Symantec Hacktool.Mimikatz
    ESET-NOD32 a variant of Win64/Riskware.Mimikatz.CB
    APEX Malicious
    Avast Win64:Malware-gen
    ClamAV Win.Trojan.Mimikatz-6466236-0
    GData Gen:Heur.Mimikatz.1
    Kaspersky HEUR:Trojan-PSW.Win64.Mimikatz.gen
    BitDefender Gen:Heur.Mimikatz.1
    Tencent Win64.Risk.Riskware.Afro
    Ad-Aware Gen:Heur.Mimikatz.1
    Sophos Troj/Mimkatz-T
    Invincea heuristic
    Trapmine suspicious.low.ml.score
    FireEye Generic.mg.735c3138ba25fd13
    Emsisoft Gen:Heur.Mimikatz.1 (B)
    SentinelOne DFI – Suspicious PE
    Endgame malicious (high confidence)
    Webroot W32.Hacktool.Gen
    eGambit hacktool.mimikatz
    Antiy-AVL HackTool/Win64.Mimikatz.a
    Microsoft HackTool:Win32/Mimikatz.D
    Jiangmin Trojan.PSW.Mimikatz.bjz
    Arcabit Trojan.Mimikatz.1
    ZoneAlarm HEUR:Trojan-PSW.Win64.Mimikatz.gen
    AhnLab-V3 Trojan/Win64.Mimikatz.R285461
    Acronis suspicious
    McAfee HTool-MimiKatz!735C3138BA25
    MAX malware (ai score=84)
    Malwarebytes HackTool.Mimikatz
    Panda HackingTool/Mimikatz
    TrendMicro-HouseCall HKTL_MIMIKATZ64
    Rising HackTool.Mimikatz!1.B3A8 (CLASSIC)
    Ikarus HackTool.Mimikatz
    AVG Win64:Malware-gen
    Qihoo-360 Win64/Trojan.PSW.a2b

    How to remove Heur.Mimikatz.1 (B)?

    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.
    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Recent Posts

    Application.Generic.3678684 malicious file

    The Application.Generic.3678684 is considered dangerous by lots of security experts. When this infection is active,…

    9 mins ago

    Malware.AI.1560801952 malicious file

    The Malware.AI.1560801952 is considered dangerous by lots of security experts. When this infection is active,…

    2 hours ago

    Malware.AI.3778280684 removal tips

    The Malware.AI.3778280684 is considered dangerous by lots of security experts. When this infection is active,…

    2 hours ago

    Should I remove “Jalapeno.777”?

    The Jalapeno.777 is considered dangerous by lots of security experts. When this infection is active,…

    2 hours ago

    MSIL/Kryptik.ALMH (file analysis)

    The MSIL/Kryptik.ALMH is considered dangerous by lots of security experts. When this infection is active,…

    2 hours ago

    Should I remove “Trojan.Win32.Agent.xbmkrx”?

    The Trojan.Win32.Agent.xbmkrx is considered dangerous by lots of security experts. When this infection is active,…

    3 hours ago