Trojan

About “Trojan.GenericPMF.S32120177” infection

Malware Removal

The Trojan.GenericPMF.S32120177 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.GenericPMF.S32120177 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid
  • Deletes executed files from disk

How to determine Trojan.GenericPMF.S32120177?


File Info:

name: A569E2CE5319DB59A7BF.mlw
path: /opt/CAPEv2/storage/binaries/346795c2f4b7a99d7f07a58a5fc77da78339d86295908b8208e8b76b55df4aaf
crc32: 3D1FBAE0
md5: a569e2ce5319db59a7bf39aa6be7bab3
sha1: 2f18b366780e7fb4969dab5c227d453022dd694f
sha256: 346795c2f4b7a99d7f07a58a5fc77da78339d86295908b8208e8b76b55df4aaf
sha512: 9f87002efc472694d28c2dac180221fb27c5b53d1221c9be01f217fbac821ab2d6116334f0288af234e302828246857728f75e7312b3ee39ce04e32640dd7040
ssdeep: 192:K3Apk98m4e0/IDJh/5ZQcvoyne4t/PQ3Pw1C0SluWbiWBNEckPPdBmYQ3AUtsz:eApc8m4e0GvQak4JI341C0abnkXDnQs
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16DC2942679E04639C732C77084BE78D16DB27D1E6945880EC6433AB49C72BD2EE6D70E
sha3_384: 4045599030de570301a81603a9a6eacb67673b904470d79055b3b3fb8b3fc82f0e09d5e8b2045d1cff1dbc0ace70a32e
ep_bytes: 558bec6aff6888204000685018400064
timestamp: 2006-07-02 14:19:05

Version Info:

0: [No Data]

Trojan.GenericPMF.S32120177 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Heur.bqX@H9kNqkgb
FireEyeGeneric.mg.a569e2ce5319db59
CAT-QuickHealTrojan.GenericPMF.S32120177
SkyhighBehavesLike.Win32.Generic.mt
McAfeeGenericRXDN-CE!A569E2CE5319
MalwarebytesAgent.Trojan.Dropper.DDS
SangforSuspicious.Win32.Save.ins
K7AntiVirusRiskware ( 0040eff71 )
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.e5319d
VirITTrojan.Win32.Loan.A
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDropper.Agent.SOI
APEXMalicious
ClamAVWin.Downloader.20341-1
KasperskyTrojan-Downloader.Win32.Loan.a
BitDefenderGen:Trojan.Heur.bqX@H9kNqkgb
NANO-AntivirusTrojan.Win32.Loan.wswt
ViRobotTrojan.Win32.Downloader.2356269
AvastWin32:Malware-gen
TencentTrojan-DL.Win32.Loan.ha
SophosTroj/Loan-A
F-SecureTrojan.TR/Crypt.XDR.Gen
DrWebTrojan.Sdter.40
ZillyaDownloader.Loan.Win32.2
EmsisoftGen:Trojan.Heur.bqX@H9kNqkgb (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojanDownloader.Loan.h
GoogleDetected
AviraTR/Crypt.XDR.Gen
VaristW32/Downloader.ULNT-8355
Antiy-AVLTrojan[Downloader]/Win32.Loan
Kingsoftmalware.kb.a.978
XcitiumTrojWare.Win32.Downloader.Loan.~A@5eal0
ArcabitTrojan.Heur.EBA6DF
ZoneAlarmTrojan-Downloader.Win32.Loan.a
GDataWin32.Trojan.PSE.Z2FDMT
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.OnlineGameHack.R48689
Acronissuspicious
BitDefenderThetaAI:Packer.38EF9FA71C
ALYacGen:Trojan.Heur.bqX@H9kNqkgb
MAXmalware (ai score=82)
Cylanceunsafe
PandaTrj/Genetic.gen
RisingDropper.Agent!1.E3CA (CLASSIC)
YandexTrojan.DL.Loan!A70NC6M03ss
IkarusTrojan-Downloader.Win32.Loan
FortinetW32/Generic.AC.25CAAE!tr
AVGWin32:Malware-gen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)
alibabacloudTrojan.Win.UnkAgent

How to remove Trojan.GenericPMF.S32120177?

Trojan.GenericPMF.S32120177 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment