Malware

MalCert-S.LV (A) (file analysis)

Malware Removal

The MalCert-S.LV (A) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MalCert-S.LV (A) virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (4 unique times)
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • At least one IP Address, Domain, or File Name was found in a crypto call
  • A process created a hidden window
  • Performs some HTTP requests
  • Attempts to modify proxy settings

Related domains:

z.whorecord.xyz
a.tomx.xyz
www.christchurchmvl.org
ocsp.comodoca.com
ocsp.usertrust.com

How to determine MalCert-S.LV (A)?


File Info:

crc32: 877745DA
md5: 53817315b195e328ccc0f56b15b247c7
name: 53817315B195E328CCC0F56B15B247C7.mlw
sha1: 7bedab96b89d000288b573de0b5693cf49dae47f
sha256: ea2decec34ae3129d5da1f2035b34cff3c9f656bb4423904ef6b0a3ca5f47d5e
sha512: 2ca834743045f742bc65da90f1b0868af54f7d703c0ef11b6deac4080bb7260ad2f9d5d0bb7b5e2a2eca5ef837c6ad976234594e931c6fbfce06c8e1d4cb1512
ssdeep: 24576:NVPOpKJdaWTVE6LwF5oSZc1HHZZZ6OEtdU:mId1+6cjoSMHHZZZ6OEtd
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: TeamViewer Germany GmbH
InternalName: TeamViewer
FileVersion: 15.13.6.0
CompanyName: TeamViewer Germany GmbH
LegalTrademarks: TeamViewer
ProductName: TeamViewer
ProductVersion: 15.13.6.0
FileDescription: TeamViewer
OriginalFilename: TeamViewer_Note.exe
Translation: 0x0409 0x04b0

MalCert-S.LV (A) also known as:

AvastFileRepMetagen [Malware]
McAfee-GW-EditionArtemis
EmsisoftMalCert-S.LV (A)
JiangminTrojan.Alien.na
WebrootW32.Trojan.Gen
McAfeeArtemis!53817315B195
AVGFileRepMetagen [Malware]

How to remove MalCert-S.LV (A)?

MalCert-S.LV (A) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment