Virus

Virus:Win32/Viking.MS.dam#1 removal instruction

Malware Removal

The Virus:Win32/Viking.MS.dam#1 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Virus:Win32/Viking.MS.dam#1 virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Virus:Win32/Viking.MS.dam#1?


File Info:

name: 711EB6C03D9F3098AF81.mlw
path: /opt/CAPEv2/storage/binaries/4ce22af3bb39d1c2f111887c150d89c0c3c1e296bb9093b4e68a5796d08421e6
crc32: CBC5B42D
md5: 711eb6c03d9f3098af81b09d69ef9eb4
sha1: d7ae99914e14c9ebeda87bd03ea2ea67e8d10d70
sha256: 4ce22af3bb39d1c2f111887c150d89c0c3c1e296bb9093b4e68a5796d08421e6
sha512: e06b389e86d4da9d834d32190eb261f833994ac0ac0315cb2f0e9449929de599450aeac045915ec29df2c88e1d15d5cbe648018681733f1a838d55e9362b6f5d
ssdeep: 3072:fKtfDwsjPThTYa1DH2fbKtfDwsjPThTYszDH2f:CtfDwsjPThTD1L2+tfDwsjPThT5zL2
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T102647D47FA90C872C02819BC8D1EC6D5F7B77A702E190962B9FAAF4CDC6A2D2151D247
sha3_384: cbcc1d4c1baaba6d9641c5feae8156cf39c022eb3693a3d40f12f89b13421ff4f7315cd6b3842fd2f78a392a71cd4c6c
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Virus:Win32/Viking.MS.dam#1 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebWin32.HLLW.Lant
MicroWorld-eScanTrojan.Agent.FPMF
FireEyeGeneric.mg.711eb6c03d9f3098
CAT-QuickHealTrojan.Viking.M6
ZillyaTrojan.Lmir.Win32.10921
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaAI:Packer.DCD448341F
CyrenW32/Legendmir.P.gen!Eldorado
ESET-NOD32Win32/PSW.Legendmir.XE
TrendMicro-HouseCallTROJ_LEMIR.T
CynetMalicious (score: 100)
KasperskyTrojan-GameThief.Win32.Lmir.xe
BitDefenderTrojan.Agent.FPMF
NANO-AntivirusTrojan.Win32.Lmir.kjsx
AvastWin32:Lmir-FX [Trj]
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazruF/gAbXLnXvVHsPopv9R2)
Ad-AwareTrojan.Agent.FPMF
ComodoHeur.Corrupt.PE@1z141z3
BaiduWin32.Virus.Agent.s
VIPREVirus.Win32.Viking.ms (v)
TrendMicroTROJ_LEMIR.T
SophosML/PE-A + Mal/Behav-419
IkarusTrojan-Downloader.Win32.Delf
JiangminTrojan.PSW.LMir.id
eGambitUnsafe.AI_Score_100%
AviraW32/Lemir.Dll.1
MAXmalware (ai score=84)
ArcabitTrojan.Agent.FPMF
MicrosoftVirus:Win32/Viking.MS.dam#1
AhnLab-V3Backdoor/Win32.Hupigon.C83485
VBA32TrojanPSW.Lmir
ALYacTrojan.Agent.FPMF
TACHYONTrojan-PWS/W32.Lmir.319488
MalwarebytesSpyware.PasswordStealer
APEXMalicious
TencentTrojan.Win32.BitCoinMiner.la
YandexTrojan.GenAsa!YaW/VrU/KAE
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Legendmir.XE!tr
AVGWin32:Lmir-FX [Trj]

How to remove Virus:Win32/Viking.MS.dam#1?

Virus:Win32/Viking.MS.dam#1 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment