Malware

How to remove “Win32/PSW.Legendmir.NMD”?

Malware Removal

The Win32/PSW.Legendmir.NMD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/PSW.Legendmir.NMD virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Win32/PSW.Legendmir.NMD?


File Info:

name: F857D0F883780D8EE774.mlw
path: /opt/CAPEv2/storage/binaries/ac277dbab24f0a0e4aae7a426be21b50246a873233b732da2c9ca773cf7b23d9
crc32: 7032A1BD
md5: f857d0f883780d8ee77451fa16904177
sha1: f943a992d55d73d624b7c20517b6ca7f2585c7c2
sha256: ac277dbab24f0a0e4aae7a426be21b50246a873233b732da2c9ca773cf7b23d9
sha512: eaed4692343139272619385a85c25e83bcfa6776352848e61b11147a42bf28204f7f668e8b0a926a9017580510ed0810e9150ba179e5f79c1c094743eb4c8d83
ssdeep: 6144:C/iUEajdMJyFRe6at+eH9BpoxJI3ANJuBN0PDGxWSqqcfrj8XzL/3upuqsx:E52JylYEZNJuzVrcX8GWx
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T183A41A22E2FD4431F1B316705EB584A4AA777E6C2D31965F22C8B20F5DBADC19D68332
sha3_384: 1f64c674e0b57425e7b4f31a5d437f180cae004c16ab8031254cff04444dd8da4aa32e9ec25f26ec532037f6efbea0ea
ep_bytes: feffffba05010000e8a0fdffff8d45e8
timestamp: 2013-12-17 20:10:26

Version Info:

0: [No Data]

Win32/PSW.Legendmir.NMD also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Hupigon.l5wR
MicroWorld-eScanGen:Variant.Ulise.324703
FireEyeGen:Variant.Ulise.324703
ALYacGen:Variant.Ulise.324703
CylanceUnsafe
ZillyaTrojan.Legendmir.Win32.5267
K7AntiVirusPassword-Stealer ( 0055ec371 )
AlibabaVirus:Win32/Philis.1028
K7GWPassword-Stealer ( 0055ec371 )
CyrenW32/Legendmir.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/PSW.Legendmir.NMD
APEXMalicious
ClamAVWin.Trojan.Lmir-22
BitDefenderGen:Variant.Ulise.324703
AvastWin32:Delf-AFC [Trj]
TencentWin32.Trojan.Generic.Eddn
Ad-AwareGen:Variant.Ulise.324703
SophosMal/Generic-S
McAfee-GW-EditionArtemis!Virus
EmsisoftGen:Variant.Ulise.324703 (B)
IkarusTrojan-Spy.Lmir
GDataGen:Variant.Ulise.324703
MAXmalware (ai score=84)
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
McAfeeGenericRXQW-NI!F857D0F88378
MalwarebytesMalware.AI.4075216139
TrendMicro-HouseCallTROJ_GEN.R053H0CKR21
RisingVirus.Viking!1.A181 (CLASSIC)
YandexTrojan.PWS.Legendmir!3sKdEl+l0Go
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Legendmir.NMD!tr.pws
AVGWin32:Delf-AFC [Trj]

How to remove Win32/PSW.Legendmir.NMD?

Win32/PSW.Legendmir.NMD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment