Malware

Heur.Mint.Zard.53 information

Malware Removal

The Heur.Mint.Zard.53 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Heur.Mint.Zard.53 virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Creates RWX memory
  • Starts servers listening on 127.0.0.1:50000
  • The binary likely contains encrypted or compressed data.
  • Tries to unhook or modify Windows functions monitored by Cuckoo
  • Creates a copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz
greatoric.com
manismay.com

How to determine Heur.Mint.Zard.53?


File Info:

crc32: 227CB2D3
md5: e2603170e1151aaaa5e939194fb2379c
name: E2603170E1151AAAA5E939194FB2379C.mlw
sha1: d514c9164c888795e10d022a7485d7704986249b
sha256: 2784151b4325f992af8c60d8ed4a408627ebe35c97522627f102be9e704b64cf
sha512: 8b09634e7724a64c07a42800ecd4bf8ae412540674f9652db3056474a6b99ae8205a45e34f0763494563d4a4c867079bae41e05999c0d074b8f356f91cf49469
ssdeep: 6144:hjB3NdLhrSaL2o1Ac7mMoEwptYhrNhvDF+KHhLtS/qi5KSu/JlMJlqHE+s1Jy:tBjLh9v1ATM6tYp3vns/qYJlqk+s1J
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

FileVersion: 13, 4, 6209, 1428
CompanyName: Point Dark
LegalTrademarks: Varycent Hole
ProductName: Varycent Hole
ProductVersion: 13, 4, 6209, 1428
FileDescription: Varycent Hole
Translation: 0x0409 0x04b0

Heur.Mint.Zard.53 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0053609d1 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.IcedID.12
CynetMalicious (score: 99)
ALYacGen:Heur.Mint.Zard.53
CylanceUnsafe
ZillyaTrojan.IcedID.Win32.1
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanDropper:Win32/dropper.ali1003001
K7GWTrojan ( 0053609d1 )
Cybereasonmalicious.0e1151
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GIHI
APEXMalicious
AvastWin32:Malware-gen
BitDefenderGen:Heur.Mint.Zard.53
NANO-AntivirusTrojan.Win32.IcedID.fedwhb
MicroWorld-eScanGen:Heur.Mint.Zard.53
TencentMalware.Win32.Gencirc.10ba515a
Ad-AwareGen:Heur.Mint.Zard.53
SophosMal/Generic-S
ComodoTrojWare.Win32.Kryptik.BDQL@82hz4h
BitDefenderThetaGen:NN.ZexaF.34236.Pu0@aKzDgEei
McAfee-GW-EditionGenericRXFU-OZ!E2603170E115
FireEyeGeneric.mg.e2603170e1151aaa
EmsisoftGen:Heur.Mint.Zard.53 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Banker.IcedID.cf
AviraHEUR/AGEN.1109490
eGambitUnsafe.AI_Score_60%
Antiy-AVLTrojan/Generic.ASMalwS.26A0678
MicrosoftTrojan:Win32/Skeeyah.A!rfn
ArcabitTrojan.Mint.Zard.53
GDataGen:Heur.Mint.Zard.53
AhnLab-V3Malware/Win32.Generic.C2838175
Acronissuspicious
McAfeeGenericRXFU-OZ!E2603170E115
MAXmalware (ai score=99)
VBA32Trojan.IcedID
MalwarebytesTrojan.Crypt
PandaTrj/CI.A
RisingTrojan.Generic@ML.98 (RDMK:pNPdaZO4KNfV2CvlZ0/Huw)
YandexTrojan.PWS.IcedID!XScOx/Or8VQ
IkarusTrojan.Win32.Crypt
FortinetW32/GenKryptik.CCLA!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Heur.Mint.Zard.53?

Heur.Mint.Zard.53 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment