Trojan

How to remove “Trojan.GenericPMF.S2958776”?

Malware Removal

The Trojan.GenericPMF.S2958776 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.GenericPMF.S2958776 virus can do?

  • Attempts to connect to a dead IP:Port (2 unique times)
  • Possible date expiration check, exits too soon after checking local time
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Uses Windows utilities for basic functionality
  • Sniffs keystrokes
  • A process attempted to delay the analysis task by a long amount of time.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Creates a copy of itself
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Trojan.GenericPMF.S2958776?


File Info:

crc32: 4BE9D698
md5: 5f719f31be847ec1b05e33da90b23c17
name: 5F719F31BE847EC1B05E33DA90B23C17.mlw
sha1: 084cf97270e588b87f8f15c469cfd4c9e32c679f
sha256: 844c220407941a4a7f0678be04168e1554252a9a46c54436cccaf769d52b587c
sha512: 1586fc45831257c7452ede2ff8f1d234f10b67d7ab21f28f4dd5415764a164e57b63c1395422ed0a9f9963493a65880d17baaddc8add748adb25eb394596bc90
ssdeep: 6144:PafsiuvAQ+tTm6cyERSiytj71cWE4jKS6v:MCvAQ+q6ctRt636WfjO
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Trojan.GenericPMF.S2958776 also known as:

CyrenCloudW32/A-98aec620!Eldorado
K7AntiVirusTrojan ( 004ba8531 )
Elasticmalicious (high confidence)
ClamAVWin.Malware.Zusy-6888246-0
CAT-QuickHealTrojan.GenericPMF.S2958776
ALYacTrojan.Agent.DCER
CylanceUnsafe
ZillyaTrojan.Scar.Win32.54986
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 004ba8531 )
Cybereasonmalicious.1be847
BaiduWin32.Worm.Agent.fl
NANO-AntivirusTrojan.Win32.Agent.erqhdu
CyrenW32/A-98aec620!Eldorado
SymantecW32.Pholdicon
APEXMalicious
AvastWin32:Dropper-GUP [Drp]
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Agentb.bqyr
BitDefenderTrojan.Agent.DCER
MicroWorld-eScanTrojan.Agent.DCER
TencentTrojan.Win32.Keylogger.aa
Ad-AwareTrojan.Agent.DCER
SophosMal/Generic-R + Troj/Scar-CM
ComodoTrojWare.Win32.Scar.WRM@6hdckm
F-SecureTrojan.TR/Crypt.XPACK.Gen4
DrWebTrojan.DownLoader22.23546
VIPRETrojan.Win32.Generic!BT
TrendMicroWORM_MACOUTE.SMJ1
McAfee-GW-EditionBehavesLike.Win32.Generic.gt
SentinelOneStatic AI – Malicious PE
F-ProtW32/A-98aec620!Eldorado
JiangminTrojan/Scar.agsm
AviraTR/Crypt.XPACK.Gen4
GridinsoftTrojan.Win32.Agent.bot!s1
ArcabitTrojan.Agent.DCER
SUPERAntiSpywareWorm.PasswordStealer/Variant
ZoneAlarmTrojan.Win32.Agentb.bqyr
TACHYONTrojan/W32.Agentb.504320
AhnLab-V3Trojan/Win32.Scar.R160138
Acronissuspicious
McAfeeGenericRXAH-QS!5F719F31BE84
MAXmalware (ai score=87)
VBA32BScope.Trojan.Agentb
MalwarebytesPioneer.Virus.FileInfector.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallWORM_MACOUTE.SMJ1
RisingWorm.Macoute!1.A746 (CLASSIC)
YandexWorm.Agent!Nf1Sq5gK1TY
IkarusTrojan.Win32.Scar
eGambitUnsafe.AI_Score_99%
FortinetW32/Agent.NRT!worm
AVGWin32:Dropper-GUP [Drp]
Qihoo-360HEUR/QVM02.0.8BB3.Malware.Gen

How to remove Trojan.GenericPMF.S2958776?

Trojan.GenericPMF.S2958776 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment