Malware

ML/PE-A + W32/Memery-A removal instruction

Malware Removal

The ML/PE-A + W32/Memery-A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What ML/PE-A + W32/Memery-A virus can do?

  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine ML/PE-A + W32/Memery-A?


File Info:

crc32: 70755D60
md5: 288ed638af5d093418c60f0a3607bdea
name: 288ED638AF5D093418C60F0A3607BDEA.mlw
sha1: 2360fbb232286396d45059ddd7df274c5d2c0e4a
sha256: 6f2b06e952b94e1272678e3f2ebfb12d995e02672d44c75f4ad72e2b75841ee2
sha512: c12492416588024b84aa01a195c98c18d8e26743c0bd080f9f425a5bc21a96025b7c0006539ab04d1ed2f3496a1dd2d699b429c46763ec31a3940cbfdf9f3538
ssdeep: 6144:iiJA+5BUxdB2g9ahytCqTBNovd1E6dqi4py5NDPvYlo:1JpXg9aMtCqT+Ey1VPL
type: PE32 executable (console) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

ML/PE-A + W32/Memery-A also known as:

BkavW32.FamVT.MemeryATTc.PE
K7AntiVirusVirus ( 0040f6101 )
Elasticmalicious (high confidence)
DrWebWin32.Siggen.16
CynetMalicious (score: 100)
ALYacWin32.Olext.A
CylanceUnsafe
ZillyaVirus.Lamer.Win32.7
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWVirus ( 0040f6101 )
Cybereasonmalicious.8af5d0
BaiduWin32.Virus.Lamer.b
CyrenW32/Viking.DN
SymantecW32.Stackex!inf
ESET-NOD32Win32/Memery.A
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Trojan.Agent-1110459
KasperskyVirus.Win32.Lamer.kj
BitDefenderWin32.Olext.A
NANO-AntivirusTrojan.Win32.Memery.bybqne
MicroWorld-eScanWin32.Olext.A
TencentVirus.Win32.Lamer.pj
Ad-AwareWin32.Olext.A
SophosML/PE-A + W32/Memery-A
ComodoWorm.Win32.Viking.jet@4zhztf
BitDefenderThetaAI:FileInfector.37DCC0A10D
VIPREVirus.Win32.Memery.a (v)
TrendMicroPE_MEMERY.AA
McAfee-GW-EditionBehavesLike.Win32.Morefi.fh
FireEyeGeneric.mg.288ed638af5d0934
EmsisoftWin32.Olext.A (B)
SentinelOneStatic AI – Malicious PE
JiangminWorm/Generic.agid
AviraTR/Morefi.dudr
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.35E584
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitWin32.Olext.A
GDataWin32.Olext.A
TACHYONWorm/W32.Lamer.Zen
AhnLab-V3Win32/Infector.467960
Acronissuspicious
McAfeeObfuscated-FHH!hb
MAXmalware (ai score=83)
VBA32Virus.Loch.271107
MalwarebytesLamer.Virus.FileInfector.DDS
TrendMicro-HouseCallPE_MEMERY.AA
RisingVirus.Memery!1.A0B4 (CLASSIC)
YandexTrojan.Cosmu!CWM0cgW+wk8
IkarusGen.Win32.FileInfector
MaxSecureVirus.W32.Lamer.kj
FortinetPossibleThreat
AVGWin32:Malware-gen
Qihoo-360HEUR/QVM11.1.2F2F.Virus.Win32.Lamer

How to remove ML/PE-A + W32/Memery-A?

ML/PE-A + W32/Memery-A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment