Trojan

Trojan.GenericPMF.S30267386 removal tips

Malware Removal

The Trojan.GenericPMF.S30267386 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.GenericPMF.S30267386 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Trojan.GenericPMF.S30267386?


File Info:

name: F6C594822F071BB3AEE6.mlw
path: /opt/CAPEv2/storage/binaries/3fc3f4e4f8bd6273423aa73f0ed880a856cd785cce7fb8182b6443b758f819c0
crc32: 3982F87B
md5: f6c594822f071bb3aee6c0a931cfe6cb
sha1: 1c75cf58c1f04f61c9d5833a40e4802721f33f39
sha256: 3fc3f4e4f8bd6273423aa73f0ed880a856cd785cce7fb8182b6443b758f819c0
sha512: cfa8811ac74f3b8a4339efc70b2b4d254971630e5648c763b9633dc9f96509930679db138eec87badf24b93f3c34bf05a9f6ec44a462510cc8b91ef0ea6c7c90
ssdeep: 3072:ewkllvPNqqY5Ph5JOB0iYeQ5K5PzK5REFwC5R2/:ClvUqY3I088h02
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1C6C37E0175C180B1E5B21931AD7CD9A4CE3EFDE04F20ADEB3B64066E4F748C1BAB5996
sha3_384: 6a20f33e84c0fadcc59b0a300aea7a39cb8697787f6b48f21009555ee7aa79e0e08874688c3df4ef0246ec4dece98e43
ep_bytes: e8e2020000e974feffff558bec83ec0c
timestamp: 2023-06-21 19:58:18

Version Info:

Comments: This is a legitimate application.
CompanyName: Macquarie Group Limited
FileDescription: Macquarie Group Limited Product
FileVersion: 754
InternalName: eDqzdMMvBPnL
LegalCopyright: © Macquarie Group Limited All rights reserved.
LegalTrademarks: © Macquarie Group Limited Trademarks
OriginalFilename: EvQFMQh1.exe
ProductName: OVcuX7qJaY
ProductVersion: 754
Translation: 0x0407 0x04b0

Trojan.GenericPMF.S30267386 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Lazy.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Lazy.353482
FireEyeGeneric.mg.f6c594822f071bb3
CAT-QuickHealTrojan.GenericPMF.S30267386
ALYacGen:Variant.Lazy.353482
MalwarebytesTrojan.Crypt
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005a6ca51 )
AlibabaTrojan:MSIL/Injurer.fe4a4e3d
K7GWTrojan ( 005a6ca51 )
ArcabitTrojan.Lazy.D564CA
CyrenW32/Kryptik.KBA.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HTTW
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Spy.Win32.Stealer.pef
BitDefenderGen:Variant.Lazy.353482
AvastWin32:TrojanX-gen [Trj]
TencentTrojan.Win32.Kryptik.16000699
EmsisoftGen:Variant.Lazy.353482 (B)
F-SecureTrojan.TR/Crypt.Agent.fsuuw
DrWebTrojan.Packed2.45386
VIPREGen:Variant.Lazy.353482
TrendMicroTROJ_GEN.R002C0DFO23
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
Trapminemalicious.moderate.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
AviraTR/Crypt.Agent.fsuuw
MAXmalware (ai score=88)
Antiy-AVLTrojan/Win32.Kryptik
MicrosoftTrojan:Win32/Redline!ic
ZoneAlarmHEUR:Trojan-Spy.Win32.Stealer.pef
GDataGen:Variant.Lazy.353482
GoogleDetected
AhnLab-V3Trojan/Win.RedLine.R588255
McAfeeGenericRXWF-GF!F6C594822F07
VBA32BScope.Trojan.Kryptik
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DFO23
RisingBackdoor.Agent!8.C5D (TFE:1:M01pFm2292L)
IkarusTrojan.Agent
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/GenKryptik.GKWT!tr
BitDefenderThetaGen:NN.ZexaF.36662.hu1@ae!XrBhi
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.GenericPMF.S30267386?

Trojan.GenericPMF.S30267386 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment