Malware

Mal/Monev-A (file analysis)

Malware Removal

The Mal/Monev-A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Monev-A virus can do?

  • Network activity detected but not expressed in API logs

How to determine Mal/Monev-A?


File Info:

crc32: 9C6D4467
md5: 525e8e93879800f52388ecded3ed997b
name: 525E8E93879800F52388ECDED3ED997B.mlw
sha1: f0a6f2eabdf5311877753bb1e534224f28f87cba
sha256: 8a859f9e6c51778941082f3e38655f754f5392e36081e5b49a160f00738e1182
sha512: f29c4db76d513f1bd6b564930039c6e927c383fac0dcc19d827f4033d4a90f74ebc93e9566e78b8b1ea205c3f7f93846f6f0ba31ef5de5e43136968dc61bd7b4
ssdeep: 24576:4AhfC41BrFDRPNL5XVThfbDnn5elpjEn8d:fhfC41BrFDRPNL5XVThfbDn5elpY
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2021
Assembly Version: 2.7.0.0
InternalName: Venombin.exe
FileVersion: 2.7.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: VenomBin
ProductVersion: 2.7.0.0
FileDescription: VenomBin
OriginalFilename: Venombin.exe

Mal/Monev-A also known as:

Elasticmalicious (high confidence)
DrWebBackDoor.QuasarNET.1
ClamAVWin.Malware.Ursu-9802322-0
CAT-QuickHealTrojan.GenericFC.S21583535
ALYacIL:Trojan.MSILZilla.2093
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7GWTrojan ( 0051816c1 )
K7AntiVirusTrojan ( 0051816c1 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Agent.AIA
APEXMalicious
AvastWin32:RATX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderIL:Trojan.MSILZilla.2093
MicroWorld-eScanIL:Trojan.MSILZilla.2093
Ad-AwareIL:Trojan.MSILZilla.2093
SophosMal/Monev-A
BitDefenderThetaGen:NN.ZemsilF.34104.cn0@auDsHD
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXOE-JA!525E8E938798
FireEyeGeneric.mg.525e8e93879800f5
EmsisoftIL:Trojan.MSILZilla.2093 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.guvhw
AviraTR/Agent.harle
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.33D5D4C
MicrosoftTrojan:MSIL/ClipBanker.GC!MTB
ArcabitIL:Trojan.MSILZilla.D82D
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataIL:Trojan.MSILZilla.2093
AhnLab-V3Trojan/Win.Generic.C4455467
McAfeeGenericRXOE-JA!525E8E938798
MAXmalware (ai score=87)
VBA32TScope.Trojan.MSIL
MalwarebytesBackdoor.Venom
PandaTrj/GdSda.A
RisingExploit.Uacbypass!1.C6DD (CLASSIC)
YandexTrojan.Agent!X7CVUbytQtc
IkarusTrojan.MSIL.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.BEU!tr
AVGWin32:RATX-gen [Trj]

How to remove Mal/Monev-A?

Mal/Monev-A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment