Malware

What is “Mint.Zard.5”?

Malware Removal

The Mint.Zard.5 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mint.Zard.5 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Mint.Zard.5?


File Info:

name: FF269A0542DEC04D24F0.mlw
path: /opt/CAPEv2/storage/binaries/dea2f1e51ec8eacc812b6ac3cf1a05a597765e7eddad4a8c02126fceb42144aa
crc32: 23B80965
md5: ff269a0542dec04d24f0d3d4723dce29
sha1: 9d9a881020b41f9eae1a2c2756449cf20940d3fb
sha256: dea2f1e51ec8eacc812b6ac3cf1a05a597765e7eddad4a8c02126fceb42144aa
sha512: d6cc4c0e9a33676793400a384e892b10e0a81708f13b6640c8299f6a05b3bc1fd4aa024c8c18daeadac65a14ae7dc7f85b76f709625b9d1b3b7987c843b69f58
ssdeep: 12288:4dd+TEKeFs0VwmYc0wqDsfesGx2K8acaHrwdIxVGya:4dd+Txt0VZZqYfesGx2K8ZEwdIxVGy
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1CAB4AF1017F7E962C3B33032D6AAE7B5296E5F1A4DE4A62645043F3E2A34681DD1CE1F
sha3_384: 259d6e701948835063c89983c2079aa1e2f1dc05a9eb8742fb5d3c971998f525a64ddb21e86add37aa85af09972a4c55
ep_bytes: 8bff558bec837d0c010f84ce770000ff
timestamp: 2017-12-22 03:30:53

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Visual Studio Tools for Office Loader
FileVersion: 10.0.60828.0 built by: VSTO_Rel
InternalName: VSTOLoader.dll
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: VSTOLoader.dll
ProductName: Microsoft® Visual Studio® 2010
ProductVersion: 10.0.60828.0
Translation: 0x0409 0x04b0

Mint.Zard.5 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Mint.Zard.5
FireEyeGen:Variant.Mint.Zard.5
SkyhighBehavesLike.Win32.Dropper.hc
McAfeeArtemis!FF269A0542DE
Cylanceunsafe
ZillyaBackdoor.Convagent.Win32.6584
SangforTrojan.Win32.Patched.V7ru
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Patched.NKM
KasperskyVirus.Win32.Senoval.a
BitDefenderGen:Variant.Mint.Zard.5
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
AvastWin32:TrojanX-gen [Trj]
TencentTrojan.Win32.Pathced_ya.16001052
SophosMal/Generic-S
F-SecureTrojan.TR/Patched.Gen
DrWebWin32.Beetle.2
VIPREGen:Variant.Mint.Zard.5
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Mint.Zard.5 (B)
SentinelOneStatic AI – Suspicious PE
VaristW32/Patched.GQ1.gen!Eldorado
AviraTR/Patched.Gen
Antiy-AVLTrojan[Backdoor]/Win32.Sinowal
KingsoftWin32.Infected.AutoInfector.a
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Mint.Zard.5
ZoneAlarmVirus.Win32.Senoval.a
GDataGen:Variant.Mint.Zard.5
GoogleDetected
AhnLab-V3Trojan/Win.Generic.R603981
ALYacGen:Variant.Mint.Zard.5
MAXmalware (ai score=85)
VBA32BScope.TrojanDownloader.Emotet
PandaTrj/Genetic.gen
RisingTrojan.Generic@AI.100 (RDML:+RrYaRSKWuiKxa/ByyfHlQ)
IkarusTrojan.Win32.Patched
FortinetW32/Patched.IP!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Mint.Zard.5?

Mint.Zard.5 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment