Trojan

How to remove “Trojan.GenericPMF.S18591716”?

Malware Removal

The Trojan.GenericPMF.S18591716 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.GenericPMF.S18591716 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Creates an excessive number of UDP connection attempts to external IP addresses
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Attempts to delete volume shadow copies
  • Exhibits behavior characteristic of Cerber ransomware
  • EternalBlue behavior
  • Generates some ICMP traffic
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Trojan.GenericPMF.S18591716?


File Info:

crc32: 8DDAF7FF
md5: b06a84ae78d42b8761ac7c24a1f09e5c
name: B06A84AE78D42B8761AC7C24A1F09E5C.mlw
sha1: 6ad43aeadc09f99771e99c64ab11657a7cc989a7
sha256: 127712f661a7fde5cd1e5d1193dfb7da16f8e7257d1590259641a6ac709670ed
sha512: 34abe31104236b872d16df7c1fa9a9d53b32d716c9b3f4857bf9f4907797255c3a7343b3b4f3c443924a274a8391fc6f773e9a123149f0b9ed9ff4b527931d9e
ssdeep: 6144:mR2294/Yh5TqOqUJaU8tOKKU5pqS5AvPUnjg:mRT8YfT82gKwZOR
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

FileDescription: CloneDVD Registration Tool
Comments: Adds CloneDVD Registration Information to Windows Registry
CompanyName: Elaborate Bytes AG
Translation: 0x0000 0x04b0

Trojan.GenericPMF.S18591716 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005224381 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.4691
CynetMalicious (score: 100)
CAT-QuickHealTrojan.GenericPMF.S18591716
ALYacTrojan.Ransom.Cerber.1
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.1305840
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaRansom:Win32/Cerber.d1241043
K7GWTrojan ( 005224381 )
Cybereasonmalicious.e78d42
BaiduWin32.Trojan.Kryptik.azy
CyrenW32/S-afadad76!Eldorado
SymantecPacked.Generic.459
ESET-NOD32a variant of Win32/Kryptik.FJVQ
APEXMalicious
AvastWin32:Filecoder-BG [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Ransom.Cerber.1
NANO-AntivirusTrojan.Win32.Kryptik.evmwzw
MicroWorld-eScanTrojan.Ransom.Cerber.1
TencentWin32.Trojan.Generic.Pcsg
Ad-AwareTrojan.Ransom.Cerber.1
SophosML/PE-A + Mal/Cerber-K
ComodoTrojWare.Win32.Cerber.C@6otv5z
BitDefenderThetaGen:NN.ZexaF.34050.rq1@ayGm8dF
VIPRETrojan.Win32.Generic.pak!cobra
TrendMicroRansom_CERBER.SMEJ5
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
FireEyeGeneric.mg.b06a84ae78d42b87
EmsisoftTrojan.Ransom.Cerber.1 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.bswhy
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.22DD9E5
MicrosoftRansom:Win32/Cerber.F
GDataTrojan.Ransom.Cerber.1
AhnLab-V3Win-Trojan/Cerber.Gen
Acronissuspicious
McAfeeRansomware-FXM!B06A84AE78D4
MAXmalware (ai score=100)
VBA32BScope.Trojan.Menti
MalwarebytesMachineLearning/Anomalous.100%
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_CERBER.SMEJ5
RisingTrojan.Kryptik!1.A6D8 (CLASSIC)
YandexTrojan.Agent!uF7dHpMoQ2s
IkarusTrojan-Ransom.Cerber
FortinetW32/Kryptik.HGZD!tr
AVGWin32:Filecoder-BG [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Cerber.HxQBEpsA

How to remove Trojan.GenericPMF.S18591716?

Trojan.GenericPMF.S18591716 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment