Trojan

Trojan.GenericPMF.S32120177 removal guide

Malware Removal

The Trojan.GenericPMF.S32120177 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.GenericPMF.S32120177 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Deletes executed files from disk

How to determine Trojan.GenericPMF.S32120177?


File Info:

name: B0AE7E6D18338FAA2FFA.mlw
path: /opt/CAPEv2/storage/binaries/77d925a0c23b7ceaa1a5e1e0e71e639c51c0edc86f7e4ba616dd4956b003ef50
crc32: 9F489CAC
md5: b0ae7e6d18338faa2ffa32fad83dd0ab
sha1: fb003e5f56c945b25733268a1d0916139498cb11
sha256: 77d925a0c23b7ceaa1a5e1e0e71e639c51c0edc86f7e4ba616dd4956b003ef50
sha512: 9533b7945b894c6612fbba51a9623428f2f7ad6071be71986880be5730a618be2874f6e3b033afe0b9b0b593542e86a416dd72b0904b938e749cae0899f63812
ssdeep: 384:eApc8m4e0GvQak4JI341C0abV7E25+4s4GizH2Khm3:eApQr0GvdFJI34q5Yp4s4dzH2V
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T137D2742A79E0463AD737C73088BE78D02DB27D1A6945980EC54336B49C72BC2EE6C70D
sha3_384: 3ba232018d2ae478c954677b63f631f902bc49bd6dc13268c54f2a7bc2bc8aeb9154748e0e2743a1489b04786a175ca1
ep_bytes: 558bec6aff6888204000685018400064
timestamp: 2006-07-02 14:19:05

Version Info:

0: [No Data]

Trojan.GenericPMF.S32120177 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
DrWebTrojan.Sdter.40
MicroWorld-eScanGen:Trojan.Heur.bqY@H9kNqkgb
ClamAVWin.Downloader.20341-1
FireEyeGeneric.mg.b0ae7e6d18338faa
CAT-QuickHealTrojan.GenericPMF.S32120177
SkyhighBehavesLike.Win32.Generic.mt
McAfeeGenericRXDN-CE!B0AE7E6D1833
MalwarebytesAgent.Trojan.Dropper.DDS
ZillyaDownloader.Loan.Win32.2
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan-Downloader ( 0055c6c71 )
K7GWTrojan-Downloader ( 0055c6c71 )
Cybereasonmalicious.f56c94
BitDefenderThetaAI:Packer.D72DF4991C
VirITTrojan.Win32.Loan.A
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDropper.Agent.SOI
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Downloader.Win32.Loan.a
BitDefenderGen:Trojan.Heur.bqY@H9kNqkgb
NANO-AntivirusTrojan.Win32.Loan.wswt
AvastWin32:Malware-gen
TencentTrojan-DL.Win32.Loan.ha
EmsisoftGen:Trojan.Heur.bqY@H9kNqkgb (B)
F-SecureTrojan.TR/Crypt.XDR.Gen
VIPREGen:Trojan.Heur.bqY@H9kNqkgb
SophosTroj/Loan-A
SentinelOneStatic AI – Suspicious PE
GDataWin32.Trojan.PSE.Z2FDMT
JiangminTrojanDownloader.Loan.h
GoogleDetected
AviraTR/Crypt.XDR.Gen
MAXmalware (ai score=80)
Kingsoftmalware.kb.a.975
XcitiumTrojWare.Win32.Downloader.Loan.~A@5eal0
ArcabitTrojan.Heur.EDBE7A
ViRobotTrojan.Win32.Downloader.2356269
ZoneAlarmTrojan-Downloader.Win32.Loan.a
MicrosoftTrojanDownloader:Win32/Loan.BG!MTB
VaristW32/Downloader.ULNT-8355
AhnLab-V3Trojan/Win32.OnlineGameHack.R48689
Acronissuspicious
Cylanceunsafe
PandaTrj/Genetic.gen
RisingDropper.Agent!1.E3CA (CLASSIC)
YandexTrojan.DL.Loan!A70NC6M03ss
IkarusTrojan-Downloader.Win32.Loan
MaxSecureDownloader.W32.Loan.a
FortinetW32/Generic.AC.25CAAE!tr
AVGWin32:Malware-gen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.GenericPMF.S32120177?

Trojan.GenericPMF.S32120177 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment