Malware

Heur.Mint.Zard.11 (B) (file analysis)

Malware Removal

The Heur.Mint.Zard.11 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Heur.Mint.Zard.11 (B) virus can do?

  • Attempts to connect to a dead IP:Port (2 unique times)
  • A process attempted to delay the analysis task.
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Creates a hidden or system file
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Heur.Mint.Zard.11 (B)?


File Info:

crc32: 1520B95A
md5: 9ec5e11ee05cc51cd938b3a95778433d
name: 9EC5E11EE05CC51CD938B3A95778433D.mlw
sha1: 28bd50e7a16e6c2fceb297ea6f5849294c3f6724
sha256: b8017eed73c59ca50d16278691571323d5cb801e1bef2ba7c74a3df523268144
sha512: 2925b3141ac9d8be2fdb7dee42d2707c3341c0474174c552e893780a2787fae39f31b3dd5dc93f4e339e7d96d7a49cb26a7128df2aa7afd325a038e35756a922
ssdeep: 96:k6xZIANnVdkJ/Bys9/Q1C7PtboynunpUerhCts:k6xpSxH7P1oynWtos
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Heur.Mint.Zard.11 (B) also known as:

K7AntiVirusEmailWorm ( 0056cd5d1 )
LionicTrojan.Win32.Agent.a!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Heur.Mint.Zard.11
CylanceUnsafe
ZillyaWorm.Phorpiex.Win32.2026
SangforTrojan.Win32.Agent.gen
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaWorm:Win32/Phorpiex.cef2be5b
K7GWEmailWorm ( 0056cd5d1 )
Cybereasonmalicious.ee05cc
CyrenW32/Genome.I.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Phorpiex.AG
APEXMalicious
AvastWin32:CoinminerX-gen [Trj]
ClamAVWin.Malware.Zard-9857815-0
KasperskyHEUR:Trojan-Downloader.Win32.Agent.gen
BitDefenderGen:Heur.Mint.Zard.11
NANO-AntivirusTrojan.Win32.Phorpiex.ifmynm
MicroWorld-eScanGen:Heur.Mint.Zard.11
TencentWin32.Trojan-downloader.Agent.Hyjt
Ad-AwareGen:Heur.Mint.Zard.11
SophosMal/Generic-S
ComodoTrojWare.Win32.TrojanDownloader.Agent.EQE@80vxxy
BitDefenderThetaGen:NN.ZexaF.34294.auX@a4blhtni
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PGP21
McAfee-GW-EditionBehavesLike.Win32.Generic.lt
FireEyeGeneric.mg.9ec5e11ee05cc51c
EmsisoftGen:Heur.Mint.Zard.11 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDownloader.Agent.fyfl
WebrootW32.Trojan.Gen
AviraTR/Crypt.XPACK.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.310B80E
KingsoftWin32.Heur.KVMH017.a.(kcloud)
MicrosoftVirTool:MSIL/CryptInject
GDataGen:Heur.Mint.Zard.11
AhnLab-V3Malware/Win32.Dlder.C3467007
Acronissuspicious
McAfeeRDN/Generic Downloader.x
MAXmalware (ai score=81)
VBA32BScope.Trojan.Caynamer
MalwarebytesWorm.Phorpiex.Generic
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0PGP21
RisingTrojan.Generic@ML.100 (RDML:JGizXSFF4hNplm4z9Wtpuw)
YandexWorm.Phorpiex!E7Fll0J3aM0
IkarusWorm.Win32.Phorpiex
MaxSecureTrojan.Malware.1207211.susgen
FortinetW32/Phorpiex.AH!worm
AVGWin32:CoinminerX-gen [Trj]
Paloaltogeneric.ml

How to remove Heur.Mint.Zard.11 (B)?

Heur.Mint.Zard.11 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment