Malware

ML/PE-A + Mal/APosT-A removal

Malware Removal

The ML/PE-A + Mal/APosT-A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What ML/PE-A + Mal/APosT-A virus can do?

  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
network-msx-system33.com

How to determine ML/PE-A + Mal/APosT-A?


File Info:

crc32: 35167C7E
md5: 6ff8b82cba640ba3bebaa9172f88836b
name: 6FF8B82CBA640BA3BEBAA9172F88836B.mlw
sha1: f063783e0ed7ee57316aa866814d05a17b61e148
sha256: 03c314990a8d262530f114092c85fd9ddcbd8c423f8bd769864809d1af2f5fad
sha512: db6a21169c0084347410a50d6bc01b7c26412a8c705dfc9b7e0d86911413735caac0f21101d9d8dbfcf07df66d04e2d6f0853696ec811144e3567fd4752316db
ssdeep: 3072:+3maP/4/psvOtHRvN13//YhYdNFEP1fOU6EAV2DMLX:Bs4/plHFvSGVkmX
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2015
InternalName: spoolsrv32.exe
FileVersion: 1.0.0.1
CompanyName: Printer
ProductName: Printer
ProductVersion: 1.0.0.1
FileDescription: Printer
OriginalFilename: spoolsrv32.exe
Translation: 0x0409 0x04b0

ML/PE-A + Mal/APosT-A also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0053c4c91 )
Elasticmalicious (high confidence)
DrWebTrojan.StrongPity.11
CynetMalicious (score: 100)
CAT-QuickHealTrojan.StrongpityRI.S14778425
ALYacTrojan.StrongPity.gen
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.10592
SangforTrojan.Win32.StrongPity.gen
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Filecoder.69cbbb22
K7GWTrojan ( 0053c4c91 )
Cybereasonmalicious.cba640
CyrenW32/Filecoder.O.gen!Eldorado
SymantecTrojan Horse
ESET-NOD32a variant of Win32/Filecoder.NSD
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
ClamAVWin.Trojan.StrongPity3-8196499-3
KasperskyHEUR:Trojan.Win32.StrongPity.gen
BitDefenderTrojan.StrongPity.GenericKD.33881660
NANO-AntivirusTrojan.Win32.StrongPity.hoamtu
ViRobotTrojan.Win32.StrongPity.113152.B
MicroWorld-eScanTrojan.StrongPity.GenericKD.33881660
TencentWin32.Trojan.Filecoder.Wvbk
Ad-AwareATI:StrongPity.Exfil.F54D4913
SophosML/PE-A + Mal/APosT-A
BitDefenderThetaGen:NN.ZexaF.34722.gy0@amXuAEoi
McAfee-GW-EditionStrongPity!6FF8B82CBA64
FireEyeGeneric.mg.6ff8b82cba640ba3
EmsisoftTrojan.StrongPity.GenericKD.33881660 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.StrongPity.du
WebrootW32.Trojan.Strongpity
AviraTR/FileCoder.crwro
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.2C7EA09
MicrosoftTrojan:Win32/Tiggre!rfn
AegisLabTrojan.Win32.StrongPity.4!c
GDataTrojan.StrongPity.GenericKD.33881660
AhnLab-V3Malware/Win32.Generic.C3520310
McAfeeStrongPity!6FF8B82CBA64
MAXmalware (ai score=80)
VBA32BScope.Trojan.StrongPity
MalwarebytesMalware.AI.480382670
PandaTrj/GdSda.A
RisingTrojan.Generic@ML.86 (RDMK:/TIsNCatcU/HUtkYu2wHsw)
YandexTrojan.StrongPity!yxHCnspZMW4
IkarusTrojan-Ransom.FileCrypter
MaxSecureTrojan.Malware.9494534.susgen
FortinetW32/Filecoder.NSD!tr
AVGWin32:RansomX-gen [Ransom]
Paloaltogeneric.ml

How to remove ML/PE-A + Mal/APosT-A?

ML/PE-A + Mal/APosT-A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment