Malware

Malware.Heuristic.2001 removal instruction

Malware Removal

The Malware.Heuristic.2001 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.Heuristic.2001 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Malware.Heuristic.2001?


File Info:

name: 5A772880CDF21D3168D6.mlw
path: /opt/CAPEv2/storage/binaries/df7b976221fdf3fdeffc48f4777937272876025f521da1c91dcbc78fc78553df
crc32: 8EBC2BD5
md5: 5a772880cdf21d3168d6af82ba242cd0
sha1: c57ec36393231940a41d883538d7b1b9ac349ace
sha256: df7b976221fdf3fdeffc48f4777937272876025f521da1c91dcbc78fc78553df
sha512: 216755686302fefb8b5e270eca657fbcb3bd20005b73eb3138018ecf10989bee4d51c0ce6a716f40fc2b0512714ae306204e3a7d55d488658f512a8b6b21ed8f
ssdeep: 1536:P/Q3n7q2aoy90OpOpZ49V6daBb/E0k4WnUDBEVe1r/RVh8NE4z8:P/Onwoy/G0/HSUDBbZ5Vh8NEH
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T193A3F1A665DA0876E9CA963538F10B514E7E3C320D35CCEEC789678E3D72CE14E26352
sha3_384: 1e90e106787f1aa76d7d72a6e78fcc5ab685ff6c46dddedc5b780ca05ff9f8fade2539bd71f898fa01732f8f2e61631f
ep_bytes: 60e8000000002bd0f6da255cafb6a13c
timestamp: 2004-03-16 03:35:30

Version Info:

Translation: 0x0409 0x04e4
Comments: TAPAS Executable Stub
OriginalFilename: HPOTAX00.EXE
InternalName: HPOTAX00
CompanyName: Hewlett-Packard Co.
LegalCopyright: Copyright (C) Hewlett-Packard Co. 1995-2004
LegalTrademarks:
FileDescription: TAPAS Executable Stub
FileVersion: 43.0.120.000
VersionDate: March 16, 2004
ProductName: hp digital imaging - hp all-in-one series
ProductVersion: 043.000.120.000
ProductFamily: hp digital imaging - hp all-in-one series
ProductFileFlags: 1

Malware.Heuristic.2001 also known as:

BkavW32.SalityVA.PE
LionicVirus.Win32.Sality.v!c
Elasticmalicious (high confidence)
DrWebWin32.Sector.5
MicroWorld-eScanWin32.Sality.2.NX
FireEyeGeneric.mg.5a772880cdf21d31
CAT-QuickHealW32.Sality.R
SkyhighBehavesLike.Win32.Infected.nh
McAfeeW32/Sality.u.gen
MalwarebytesMalware.Heuristic.2001
ZillyaVirus.Sality.Win32.15
SangforVirus.Win32.Sality.Vcsx
K7AntiVirusVirus ( 00001b671 )
AlibabaVirus:Win32/Sality.e3cf037a
K7GWVirus ( 00001b671 )
Cybereasonmalicious.0cdf21
BitDefenderThetaAI:FileInfector.D5BAA53011
VirITWin32.Sality.Y
SymantecW32.Sality.AE
ESET-NOD32Win32/Sality.NAO
APEXMalicious
TrendMicro-HouseCallPE_SALITY.M
ClamAVWin.Trojan.Sality-1030
KasperskyVirus.Win32.Sality.sil
BitDefenderWin32.Sality.2.NX
NANO-AntivirusVirus.Win32.Sality.kohg
AvastWin32:Sality [Inf]
EmsisoftWin32.Sality.2.NX (B)
F-SecureMalware.W32/Sality
BaiduWin32.Virus.Sality.e
VIPREWin32.Sality.2.NX
TrendMicroPE_SALITY.M
SophosW32/Sality-AM
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=100)
JiangminWin32/HLLP.Kuku.poly
GoogleDetected
AviraW32/Sality
VaristW32/Sality.AJ
Antiy-AVLVirus/Win32.Sality.gen
KingsoftWin32.Sality.v.9728
MicrosoftVirus:Win32/Sality.AM
XcitiumVirus.Win32.Sality.gen@1egj5j
ArcabitWin32.Sality.2.NX
ViRobotWin32.Sality.Gen.A
ZoneAlarmVirus.Win32.Sality.sil
GDataWin32.Sality.2.NX
CynetMalicious (score: 100)
AhnLab-V3Win32/Kashu.B
ALYacWin32.Sality.2.NX
VBA32Virus.Win32.Sality.z
Cylanceunsafe
PandaW32/Sality.AK
RisingVirus.Sality!1.A5BD (CLASSIC)
IkarusVirus.Win32.Sality
MaxSecureVirus.Sality.AA
FortinetW32/Sality.AA
AVGWin32:Sality [Inf]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Malware.Heuristic.2001?

Malware.Heuristic.2001 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment