Worm

P2P-Worm.Win32.Eggnog.f removal instruction

Malware Removal

The P2P-Worm.Win32.Eggnog.f is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What P2P-Worm.Win32.Eggnog.f virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Attempts to identify installed AV products by installation directory

How to determine P2P-Worm.Win32.Eggnog.f?


File Info:

name: D818096BF56991C407C8.mlw
path: /opt/CAPEv2/storage/binaries/cdec5220a106d380d8e657e77534c019117f317f1b9fe7b4f9d5a765d8edff6c
crc32: A8BDE5DD
md5: d818096bf56991c407c88ff3746497ac
sha1: c24e759140769edb57304481559a8179ec2de28d
sha256: cdec5220a106d380d8e657e77534c019117f317f1b9fe7b4f9d5a765d8edff6c
sha512: 6dd8806f01bfeba234bfd49c59c3f22f89e049b04df1ab502f33b3e54c9132f30ba91f67221363e2906795afb3414e1b9ecbc94341797382120c4c3bccd6d94c
ssdeep: 1536:4MvKqZZQs1ShQi7+q0birvqqO9yBIXclqeEyz4E22AOwQ:ZvZx1UGpiWqO9yqNhqA6
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15773DF43F2C1D972C24088FEAD47F528967F3A212E9958D228F13FCE691D6906D2C19A
sha3_384: 0fd93c95ffc9b8eb6d68e53b4ce4f6840d43d65e07fa17431270f15a3231615d7f24cb80a5feeed8e5ccfc3caab419f0
ep_bytes: 558bec83c4f053b8346f4000e85fd4ff
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

P2P-Worm.Win32.Eggnog.f also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGen:Trojan.P2P-Worm.eKZ@au9m8eo
CAT-QuickHealWorm.EggnogPMF.S30739128
SkyhighBehavesLike.Win32.Eggnog.lc
McAfeeW32/Eggnog.worm.gen
MalwarebytesGeneric.Trojan.Delf.DDS
VIPREGen:Trojan.P2P-Worm.eKZ@au9m8eo
SangforTrojan.Win32.Save.a
K7AntiVirusEmailWorm ( 005a7b871 )
K7GWTrojan ( 000a4e6a1 )
Cybereasonmalicious.140769
BaiduWin32.Worm.Eggnog.a
SymantecW32.Nofer.A@mm
Elasticmalicious (high confidence)
ESET-NOD32Win32/Eggnog.E
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Worm.Eggnog-1
KasperskyP2P-Worm.Win32.Eggnog.f
BitDefenderGen:Trojan.P2P-Worm.eKZ@au9m8eo
NANO-AntivirusTrojan.Win32.Eggnog.qxemv
AvastWin32:Evo-gen [Trj]
RisingWorm.Eggnog!1.E840 (CLASSIC)
F-SecureDropper.DR/Delphi.Gen
DrWebWin32.HLLW.Google.24577
ZillyaWorm.Eggnog.Win32.52
TrendMicroWORM_EGGNOG.SMI
SophosW32/Eggnog-Fam
IkarusWorm.Win32.Eggnog
JiangminTrojan/Cospet.gv
WebrootW32.Worm.Eggnog.Gen
AviraDR/Delphi.Gen
Antiy-AVLWorm[P2P]/Win32.Eggnog
XcitiumTrojWare.Win32.Cospet.X0@1mafpo
ArcabitTrojan.P2P-Worm.E921FE
ViRobotWorm.Win32.A.P2P-Eggnog.36850
ZoneAlarmP2P-Worm.Win32.Eggnog.f
GDataWin32.Worm.Fearso.A
VaristW32/Eggnog.A2.gen!Eldorado
AhnLab-V3Worm/Win32.Eggnog.C3534480
Acronissuspicious
BitDefenderThetaAI:Packer.705B547921
ALYacGen:Trojan.P2P-Worm.eKZ@au9m8eo
VBA32BScope.Worm.Pluto
Cylanceunsafe
PandaGeneric Malware
TrendMicro-HouseCallWORM_EGGNOG.SMI
TencentWorm.Win32.Eggnog.a
YandexTrojan.GenAsa!9WQyNROzKr8
SentinelOneStatic AI – Malicious PE
MaxSecureWorm.W32.Eggnog.F
FortinetW32/Eggnog.E!worm
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove P2P-Worm.Win32.Eggnog.f?

P2P-Worm.Win32.Eggnog.f removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment