Trojan

Trojan.GenericPMF.S19172544 removal guide

Malware Removal

The Trojan.GenericPMF.S19172544 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.GenericPMF.S19172544 virus can do?

  • A file was accessed within the Public folder.
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.GenericPMF.S19172544?


File Info:

name: 1DF6C74A53AA123F0826.mlw
path: /opt/CAPEv2/storage/binaries/af1ca9109edc24778d83fafc32a2a911a75867a460b5c283525c6bcffc8c06a0
crc32: 9041B890
md5: 1df6c74a53aa123f08260e0d068142dd
sha1: 98ecfa2dc7c927139ed8dbc8c4e8c0162283f7ce
sha256: af1ca9109edc24778d83fafc32a2a911a75867a460b5c283525c6bcffc8c06a0
sha512: d81b063d477e314beec3a2d65a02dc70c341d070ee7dcd1c0af4b1d7193dd6dbba3cc71309d43716bdf32f6b0cd6b4126ea670e0c2feb1c73cd4f815514edaa0
ssdeep: 768:kS4sULWW4pX3lRrQiT9gSZXUJiSOQXRntXoSPtAKSoxoKV6VPwtUtH5W0aC+ik4:bPUg3lR8iT9XUJi6NhqKV2otUt8pCnF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17B3301EB134A7C59DADBC93D4DE6655A43B0E50503D2D30FE52EE49A3DACE092D30B12
sha3_384: d80a65b4dd2bd6d886b4d907ad0bbc6c394eb235d22206b2b18050a53f30bfdf831ccf93b8bc24f42da9ad6b86e5ef1a
ep_bytes: 60be001041008dbe0000ffff5783cdff
timestamp: 2002-01-02 21:50:18

Version Info:

0: [No Data]

Trojan.GenericPMF.S19172544 also known as:

BkavW32.AIDetectMalware
LionicRiskware.Win32.Small.l2hr
DrWebDialer.Webdial
MicroWorld-eScanDialer.Webdialer.F
ClamAVWin.Trojan.Generic-9976144-0
CAT-QuickHealTrojan.GenericPMF.S19172544
ALYacDialer.Webdialer.F
MalwarebytesGeneric.Malware.AI.DDS
VIPREDialer.Webdialer.F
SangforSuspicious.Win32.Save.a
K7AntiVirusDialer ( 00046bb31 )
AlibabaTrojan:Win32/Dialer.256b1fbe
K7GWDialer ( 00046bb31 )
Cybereasonmalicious.a53aa1
BitDefenderThetaGen:NN.ZexaF.36348.dmGfa0nHOnq
CyrenW32/Dialer.S.gen!Eldorado
SymantecDialer.Generic
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/Dialer.WebDial
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Scar.omgz
BitDefenderDialer.Webdialer.F
NANO-AntivirusTrojan.Win32.Webdial.crgopi
SUPERAntiSpywareHeur.Agent/Gen-GalPic
AvastWin32:Small-LJG [Trj]
TencentTrojan.Win32.Scar.he
EmsisoftDialer.Webdialer.F (B)
F-SecureDialer.DIAL/000019
ZillyaDialer.WebDialer.Win32.47
TrendMicroDIAL_RAS.HT
McAfee-GW-EditionBehavesLike.Win32.Dialer.qc
FireEyeGeneric.mg.1df6c74a53aa123f
SophosDial/WebDial-A
SentinelOneStatic AI – Suspicious PE
GDataDialer.Webdialer.F
JiangminTrojan.Scar.txx
WebrootWorm:Win32/Tedeos.A@mm
AviraDIAL/000019
MAXmalware (ai score=60)
Antiy-AVLGrayWare[Porn-Dialer]/Win32.WebDialer
XcitiumApplicUnwnt.Win32.PornDialer.Webdialer.DA@4n4flj
ArcabitDialer.Webdialer.F
ZoneAlarmTrojan.Win32.Scar.omgz
MicrosoftProgram:Win32/Vigram.A
GoogleDetected
AhnLab-V3Unwanted/Win32.Dialer.R101528
McAfeeGenericRXAA-AA!1DF6C74A53AA
VBA32BScope.Trojan.Scar
Cylanceunsafe
PandaDialer.Gen
TrendMicro-HouseCallDIAL_RAS.HT
RisingWorm.Tedeos!8.5B48 (TFE:5:ZxtPSdMDPuN)
IkarusDialer
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Webdialer.7ACD!tr
AVGWin32:Small-LJG [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.GenericPMF.S19172544?

Trojan.GenericPMF.S19172544 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment