Worm

P2P-Worm.Win32.Eggnog.f malicious file

Malware Removal

The P2P-Worm.Win32.Eggnog.f is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What P2P-Worm.Win32.Eggnog.f virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Attempts to identify installed AV products by installation directory

How to determine P2P-Worm.Win32.Eggnog.f?


File Info:

name: 6FC9C3F1DD873B2A2D50.mlw
path: /opt/CAPEv2/storage/binaries/df9c4e68e67bb6e55d8aa8deed929dded5c9d27af592b3091e703188b2f9a52f
crc32: 4C202B2E
md5: 6fc9c3f1dd873b2a2d506d2da3f493fc
sha1: 0a3236694ba31419163d4d3bd7f53b00afd24ddc
sha256: df9c4e68e67bb6e55d8aa8deed929dded5c9d27af592b3091e703188b2f9a52f
sha512: 839515805e727c12a2e2415e84703f860638800722d0ab7d5c6e7cac0fbcca2e075e6c61b3359f13352dd3257fbb6510ad73d6aca9f87d4a5642430b75caab7a
ssdeep: 768:ooixwqZOoQs1oRAqvQi+AFN2T6rH8E9+3KYR8BrvqVWn3NoE4m:ovKqZZQs1ShQi7+q0birvqVO9oE4m
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18513AE03F2D1C9B2C050C9FE9D07B929AA7F3B602E4954D36DF52FCE5D1A280592D29B
sha3_384: 2dfa3cf510110f2560477f7bd4907183303412ddff23ed15c657237c5b2fe971f610000486840d42fb70992fb50f4171
ep_bytes: 558bec83c4f053b8346f4000e85fd4ff
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

P2P-Worm.Win32.Eggnog.f also known as:

BkavW32.FamVT.EggogK.Worm
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.P2P-Worm.cGY@aa4wiCi
CAT-QuickHealWorm.Eggnog.S28830318
SkyhighBehavesLike.Win32.Eggnog.ph
McAfeeW32/Eggnog.worm.gen
MalwarebytesGeneric.Trojan.Delf.DDS
VIPREGen:Trojan.P2P-Worm.cGY@aa4wiCi
K7AntiVirusEmailWorm ( 005a7b871 )
K7GWTrojan ( 000a4e6a1 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaAI:Packer.F39AB5E321
VirITTrojan.Win32.Generic.BBBU
SymantecW32.Nofer.A@mm
ESET-NOD32Win32/Eggnog.E
APEXMalicious
CynetMalicious (score: 100)
KasperskyP2P-Worm.Win32.Eggnog.f
BitDefenderGen:Trojan.P2P-Worm.cGY@aa4wiCi
NANO-AntivirusTrojan.Win32.Eggnog.qxemv
AvastWin32:WormX-gen [Wrm]
TencentWorm.Win32.Eggnog.a
BaiduWin32.Worm.Eggnog.a
F-SecureDropper.DR/Delphi.Gen
DrWebWin32.HLLW.Google.24577
ZillyaTrojan.Cospet.Win32.221
TrendMicroWORM_EGGNOG.SMI
SophosW32/Eggnog-Fam
IkarusWorm.Win32.Eggnog
JiangminTrojan/Cospet.gv
WebrootW32.Worm.Eggnog.Gen
AviraDR/Delphi.Gen
Antiy-AVLWorm[P2P]/Win32.Eggnog
XcitiumTrojWare.Win32.Cospet.X0@1mafpo
ArcabitTrojan.P2P-Worm.E48FE6
ViRobotWorm.Win32.A.P2P-Eggnog.36850
ZoneAlarmP2P-Worm.Win32.Eggnog.f
AhnLab-V3Worm/Win32.Eggnog.R66977
Acronissuspicious
VBA32BScope.Worm.Pluto
ALYacGen:Trojan.P2P-Worm.cGY@aa4wiCi
Cylanceunsafe
PandaGeneric Malware
TrendMicro-HouseCallWORM_EGGNOG.SMI
RisingWorm.Eggnog!1.E840 (CLASSIC)
YandexTrojan.GenAsa!9WQyNROzKr8
SentinelOneStatic AI – Malicious PE
FortinetW32/Eggnog.E!worm
AVGWin32:WormX-gen [Wrm]
Cybereasonmalicious.94ba31
DeepInstinctMALICIOUS

How to remove P2P-Worm.Win32.Eggnog.f?

P2P-Worm.Win32.Eggnog.f removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment