Malware

Heur.Mint.Zard.46 (file analysis)

Malware Removal

The Heur.Mint.Zard.46 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Heur.Mint.Zard.46 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Steals private information from local Internet browsers
  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Network activity detected but not expressed in API logs
  • Clears web history

How to determine Heur.Mint.Zard.46?


File Info:

crc32: 41072F0B
md5: 325170dd8c268202f47930ee21dcad48
name: 325170DD8C268202F47930EE21DCAD48.mlw
sha1: ab71562202dc889c129caad456de76690a651386
sha256: 1209724bfa404702d6be4eeea6ce8e63d8f608f2b9ef02bb770ba6dea8f96930
sha512: a1157cd4f567152356b350492f0bdc481203e332eaab157d634bc67bf2769060b77a11c3fb2cb326c00aa867c2c38ac9c11620f27d2653095dd68236493a4ad2
ssdeep: 3072:lYsxrTPyiJZts46Uco/b5ApFMvtY3SGEjyG:6swiTt96sZe5Em
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Skystars Corporation x7248x6743x6240x6709
FileVersion: 1.0.0.0
CompanyName: Skystars Corporation
Comments: Command
ProductName: Command
ProductVersion: 1.0.0.0
FileDescription: Command
Translation: 0x0804 0x04b0

Heur.Mint.Zard.46 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.28884
CynetMalicious (score: 100)
ALYacTrojan.Ransom.Filecoder
CylanceUnsafe
ZillyaTrojan.Generic.Win32.905389
SangforTrojan.Win32.Encoder.usrg
AlibabaRansom:Win32/generic.ali2000010
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.d8c268
ESET-NOD32a variant of Generik.IUNUGHO
APEXMalicious
AvastFileRepMalware
KasperskyTrojan-Ransom.Win32.Encoder.dje
BitDefenderGen:Heur.Mint.Zard.46
NANO-AntivirusTrojan.Win32.Encoder.ftblof
ViRobotTrojan.Win32.Ransom.172032.D
MicroWorld-eScanGen:Heur.Mint.Zard.46
Ad-AwareGen:Heur.Mint.Zard.46
SophosTroj/Ransom-FNU
ComodoTrojWare.Win32.BlackMoon.R@8c1vff
F-SecureBackdoor.BDS/Backdoor.Gen7
BitDefenderThetaGen:NN.ZexaF.34738.kq0@a0fE3skb
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGeneric trojan.kz
FireEyeGeneric.mg.325170dd8c268202
EmsisoftGen:Heur.Mint.Zard.46 (B)
JiangminTrojan.Encoder.jq
WebrootW32.Dropper.Gen
AviraBDS/Backdoor.Gen7
Antiy-AVLTrojan/Generic.ASMalwS.2C03FA6
MicrosoftTrojan:Win32/Occamy.C12
ArcabitTrojan.Mint.Zard.46
AegisLabTrojan.Win32.Encoder.tpZi
GDataGen:Heur.Mint.Zard.46
AhnLab-V3Malware/Win32.Generic.C3335992
McAfeeGeneric .kz
MAXmalware (ai score=99)
VBA32BScope.Trojan.Downloader
PandaTrj/GdSda.A
RisingTrojan.Generic@ML.81 (RDML:h8VC07uOBc1TjJZrlASWVg)
YandexTrojan.Encoder!+HD6UlVw38w
IkarusAdWare.Win32.BlackMoon
eGambitUnsafe.AI_Score_98%
FortinetW32/CoinMiner.ESFJ!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Heur.Mint.Zard.46?

Heur.Mint.Zard.46 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment