Trojan

Trojan.BingomlRI.S28581836 (file analysis)

Malware Removal

The Trojan.BingomlRI.S28581836 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.BingomlRI.S28581836 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Harvests cookies for information gathering
  • Anomalous binary characteristics

How to determine Trojan.BingomlRI.S28581836?


File Info:

name: CC741D06E165BDB522E0.mlw
path: /opt/CAPEv2/storage/binaries/23aca7e67d5465a52dede54e69e6a36e666920f99fccd4a6c17f7c10591e1d8c
crc32: F87970DA
md5: cc741d06e165bdb522e0e15bb392da78
sha1: 636f79c8cd1f460a414bf4058b8fffcd421c2128
sha256: 23aca7e67d5465a52dede54e69e6a36e666920f99fccd4a6c17f7c10591e1d8c
sha512: d97a90355e5c3374401bd24eb294bde4153bc0ba94d23f0923a7d5f746223542a4bebb067e199410d3f836c6896acbb231888729d5e71b4d66f32dfa9f3b7667
ssdeep: 6144:RZMazQ70NfseZRyiL7683sO01uoHPw5R0g0ZaYOkESd:RS0xfseZEK68KIO6zAESd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18F44021376D5C035F07606B608A88E604BAFFD722EB04D973794208E46766E05E7AF7B
sha3_384: 46fa0544ade4844c9d6775bd80752be285a6cf3428dcaefa3e17edc7ea91df806f07bb841e6ed7c95fc75c9760065846
ep_bytes: e87a110000e97ffeffff558bec8325c8
timestamp: 2015-07-12 09:13:02

Version Info:

0: [No Data]

Trojan.BingomlRI.S28581836 also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
DrWebTrojan.Vittalia.74
MicroWorld-eScanTrojan.GenericKDZ.101457
FireEyeGeneric.mg.cc741d06e165bdb5
CAT-QuickHealTrojan.BingomlRI.S28581836
ALYacTrojan.GenericKDZ.101457
MalwarebytesGeneric.Trojan.Malicious.DDS
VIPRETrojan.GenericKDZ.101457
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0000e1321 )
K7GWTrojan ( 0000e1321 )
CrowdStrikewin/malicious_confidence_100% (D)
ArcabitTrojan.Generic.D18C51
BitDefenderThetaAI:Packer.9270F94E1F
VirITWin32.CTSGen.A
CyrenW32/Agent.FIA.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32Win32/Agent.NCK
APEXMalicious
ClamAVWin.Malware.Satan-6952126-0
KasperskyHEUR:Trojan.Win32.Bingoml.gen
BitDefenderTrojan.GenericKDZ.101457
NANO-AntivirusTrojan.Win32.TrjGen.duaita
AvastWin32:TrojanX-gen [Trj]
RisingVirus.CTS!1.DA0D (CLASSIC)
TACHYONTrojan/W32.Bingoml.268824
EmsisoftTrojan.GenericKDZ.101457 (B)
McAfee-GW-EditionBehavesLike.Win32.Ctsinf.dc
SophosW32/CTSInf-A
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Bingoml.gmt
GoogleDetected
Antiy-AVLTrojan/Win32.AGeneric
MicrosoftTrojan:Win32/Bingoml.RDA!MTB
SUPERAntiSpywareTrojan.Agent/Gen-Crypt
ZoneAlarmHEUR:Trojan.Win32.Bingoml.gen
GDataWin32.Trojan.Agent.AXD
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Dynamer.C926250
McAfeeW32/Ctsinf.a
MAXmalware (ai score=85)
VBA32Trojan.Agent
Cylanceunsafe
PandaTrj/Genetic.gen
TencentTrojan.Win32.Bingoml.ke
YandexTrojan.Agent!4WGedIyi7nU
IkarusTrojan.Win32.Prepscram
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.NCK
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Trojan.BingomlRI.S28581836?

Trojan.BingomlRI.S28581836 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment