Malware

About “PWS:MSIL/Mintluks!pz” infection

Malware Removal

The PWS:MSIL/Mintluks!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PWS:MSIL/Mintluks!pz virus can do?

  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine PWS:MSIL/Mintluks!pz?


File Info:

name: D898F335494AD7E4E904.mlw
path: /opt/CAPEv2/storage/binaries/60758bf1774225a5a19e13ae2222bdff1c023e4fc05aa38135548de557176270
crc32: FEC240EF
md5: d898f335494ad7e4e9049c8727e5e4d6
sha1: 8002b1ed1b25524b7bebd287eba91bfaf6a9b920
sha256: 60758bf1774225a5a19e13ae2222bdff1c023e4fc05aa38135548de557176270
sha512: 2a1631d3ff90b75b1365a794fd856b7f0394bc2f503f9cec9c047ec13b73bc4a941a24d3294a6372fcc5dc9e00fc327521293856776dbb464b523c900a9c7721
ssdeep: 1536:WPWV58gdy0MochZDsC8Kl/99Z242UdIAkn3jKZPjoYaoQtC67h9/J61Ns:WPWV58vn7N041Qqhgjh9/T
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16573BF15AE810D08E7F80B3205EC75CA06BFFB4EEA7057CE5D2E65981B37B9099E0764
sha3_384: 2f67572f43701bdeaf4ce89452548756600780099e30f647a8120854a22d1607667c7638160e889cc851a45f14c3e68b
ep_bytes: ff250020400000000000000000000000
timestamp: 2023-11-21 23:00:51

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: tmp28C4.tmp.exe
LegalCopyright:
OriginalFilename: tmp28C4.tmp.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

PWS:MSIL/Mintluks!pz also known as:

BkavW32.FamVT.Deb123TTc.Worm
MicroWorld-eScanTrojan.GenericKDZ.95254
FireEyeGeneric.mg.d898f335494ad7e4
CAT-QuickHealTrojan.Generic.TRFH959
SkyhighBehavesLike.Win32.Generic.lc
McAfeeGenericRXCZ-AI!D898F335494A
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.AgentGen.Win32.91
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0056ae4d1 )
K7GWTrojan ( 005690671 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.Generic.D17416
VirITTrojan.Win32.Dnldr7.DCEA
SymantecMSIL.Packed.13
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Kryptik.MSS
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Avlj-9877624-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.GenericKDZ.95254
NANO-AntivirusTrojan.Win32.Generic.euparm
AvastWin32:Agent-AVLJ [Trj]
TencentTrojan.MSIL.Zilla.ha
TACHYONTrojan/W32.DN-Agent.80384.BJ
EmsisoftTrojan.GenericKDZ.95254 (B)
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.DownLoader7.54184
VIPRETrojan.GenericKDZ.95254
TrendMicroTROJ_MINTLUKS.SM
Trapminemalicious.high.ml.score
SophosMal/MSIL-TU
IkarusTrojan.Dropper
JiangminTrojanDropper.Injector.ioj
VaristW32/MSIL_Kryptik.AZD.gen!Eldorado
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Win32.AGeneric
Kingsoftmalware.kb.c.1000
XcitiumTrojWare.MSIL.Mintluks.JJC@7axq6t
MicrosoftPWS:MSIL/Mintluks!pz
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataMSIL.Trojan.PSE.108SVUU
GoogleDetected
AhnLab-V3Trojan/Win32.Kryptik.R361449
VBA32OScope.TrojanDropper.MSIL.Mintluks
ALYacTrojan.GenericKDZ.95254
MAXmalware (ai score=80)
Cylanceunsafe
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_MINTLUKS.SM
RisingBackdoor.njRAT!1.AE81 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Kryptik.JJC!tr
BitDefenderThetaGen:NN.ZemsilF.36792.em0@aexnCWm
AVGWin32:Agent-AVLJ [Trj]
Cybereasonmalicious.d1b255
DeepInstinctMALICIOUS

How to remove PWS:MSIL/Mintluks!pz?

PWS:MSIL/Mintluks!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment