Worm

P2P-Worm.Palevo removal

Malware Removal

The P2P-Worm.Palevo is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What P2P-Worm.Palevo virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine P2P-Worm.Palevo?


File Info:

name: F00442DBEBF431532665.mlw
path: /opt/CAPEv2/storage/binaries/c240de4e58f9702125f9ca9509c073570f926bb8a827e51a20cb905ddf39d753
crc32: 87B27ECA
md5: f00442dbebf4315326658039925d427b
sha1: cf0cf8f6dff66528430aa94b9a73026622aeb44f
sha256: c240de4e58f9702125f9ca9509c073570f926bb8a827e51a20cb905ddf39d753
sha512: 90a115da145034240da6f4ea5ba63823ffb17889de4074bb76033bb48fda0c540b05d450a42c4e35dce9bc61034d5825474db770966721221800179891cf8084
ssdeep: 1536:6mabuxgl7JnbQvVPsoYmwBQwS7+5+9NBTPLyQih6t0x+7PuVQhd2DDTNoThBJ:6PbqgPbkPtN6QfI4Pu2hSkn
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T119B37D03F258B473E77A44B81A1AAF684C7FBC301991891BB68C0E5E7BB0D85E53535B
sha3_384: 6ba965cc2d931ffe2925329c79ba6c2776967df310ce63215ce3f26089de60cd6d186ba2d7876ace30aaff0f86f2fa76
ep_bytes: 68846b4000e8f0ffffff000000000000
timestamp: 2002-11-02 17:17:05

Version Info:

Translation: 0x0409 0x04b0
CompanyName: Digitope
FileDescription: FontPak
LegalCopyright: Copyright © 2001-2002 by Eric J. LeVin II & Daniel J. LeVin. All Rights Reserved.
LegalTrademarks: Digitope™, FontZip™, InstantInstall™ and FontPak™ are trademarks of Eric J. LeVin II. All Rights Reserved.
ProductName: Digitope FontZip
FileVersion: 3.05.0002
ProductVersion: 3.05.0002
InternalName: fontface
OriginalFilename: fontface.exe

P2P-Worm.Palevo also known as:

LionicWorm.Win32.Palevo.r!c
FireEyeGeneric.mg.f00442dbebf43153
CAT-QuickHealWorm.PalevoVMF.S2281207
McAfeeArtemis!F00442DBEBF4
CylanceUnsafe
ZillyaWorm.Palevo.Win32.116781
SymantecML.Attribute.HighConfidence
Paloaltogeneric.ml
NANO-AntivirusTrojan.Win32.Palevo.eoqpbc
SUPERAntiSpywareWorm.Palevo/Variant
AvastWin32:Malware-gen
TencentMalware.Win32.Gencirc.11494afe
SophosML/PE-A
McAfee-GW-EditionArtemis
JiangminWorm.Palevo.jo
MAXmalware (ai score=95)
Antiy-AVLTrojan/Generic.ASMalwS.15B32B1
MicrosoftTrojan:Win32/Wacatac.B!ml
TACHYONWorm/W32.VB-Palevo.109064
VBA32P2P-Worm.Palevo
MalwarebytesWorm.Palevo
YandexTrojan.GenAsa!YuXofyTEjWU
MaxSecureTrojan.Malware.8776582.susgen
FortinetW32/Palevo.HSWK!worm.p2p
AVGWin32:Malware-gen
Cybereasonmalicious.6dff66

How to remove P2P-Worm.Palevo?

P2P-Worm.Palevo removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment