Malware

Should I remove “Mint.Zard.5”?

Malware Removal

The Mint.Zard.5 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mint.Zard.5 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Mint.Zard.5?


File Info:

name: 771F6142EE90FED1012D.mlw
path: /opt/CAPEv2/storage/binaries/498fd18092674b5e1b2d1622f8bfcff556eedb85684f04894c2cb76a54576c70
crc32: 1E68F51F
md5: 771f6142ee90fed1012d5944c83732ce
sha1: e5957b07d30a3fbb33e175fe933a5851f2261e81
sha256: 498fd18092674b5e1b2d1622f8bfcff556eedb85684f04894c2cb76a54576c70
sha512: 8c3ca7d19c9989cd9d888af54688c58c9d8de1095fced809d162dc2e8df33a65272a8a0b1b8f84b06616ea45b05982361f5844a0ad87819fdb7da9d3a11d7b41
ssdeep: 24576:DWd0gs2sMZS8uy8XVWo3JXht16IQO7uKx:D4s2T49jYy3QO7jx
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1D3258D22AD8EC63AD68E00315EBC5E6E402ED985333D51D3A2DC6B29D8797D32F31197
sha3_384: 2030f37b56fd10df729bfa28587f7f80b3a2efad5530bd6592f253345aad6f80006203dfc4d0934f476bd1b909d54b9f
ep_bytes: 558bec837d0c017505e846040000ff75
timestamp: 2022-09-17 04:31:55

Version Info:

0: [No Data]

Mint.Zard.5 also known as:

BkavW32.AIDetectMalware
LionicVirus.Win32.Senoval.n!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Mint.Zard.5
FireEyeGen:Variant.Mint.Zard.5
SkyhighBehavesLike.Win32.Generic.dc
ALYacGen:Variant.Mint.Zard.5
K7AntiVirusTrojan ( 005ab4bf1 )
AlibabaTrojan:Win32/Senoval.5ebf1ce7
K7GWTrojan ( 005ab4bf1 )
SymantecTrojan.Gen.6
ESET-NOD32a variant of Win32/Patched.NKM
ClamAVWin.Virus.Babar-10015422-0
KasperskyVirus.Win32.Senoval.a
BitDefenderGen:Variant.Mint.Zard.5
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
TencentTrojan.Win32.Pathced_ya.16001052
F-SecureTrojan.TR/Patched.Gen
DrWebWin32.Beetle.2
VIPREGen:Variant.Mint.Zard.5
SophosW32/Patched-CD
IkarusTrojan.Win32.Patched
GoogleDetected
AviraTR/Patched.Gen
VaristW32/Patched.GQ1.gen!Eldorado
Antiy-AVLTrojan/Win32.Patched
ArcabitTrojan.Mint.Zard.5
ZoneAlarmVirus.Win32.Senoval.a
GDataGen:Variant.Mint.Zard.5
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R605066
VBA32BScope.TrojanDownloader.Emotet
MAXmalware (ai score=87)
DeepInstinctMALICIOUS
Cylanceunsafe
RisingTrojan.Generic@AI.96 (RDML:FQa1QZ6xEiiULKvNgk9/5w)
FortinetW32/Patched.IP!tr
PandaTrj/Genetic.gen

How to remove Mint.Zard.5?

Mint.Zard.5 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment