Trojan

Trojan.GenericPMF.S4954728 removal

Malware Removal

The Trojan.GenericPMF.S4954728 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.GenericPMF.S4954728 virus can do?

  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.GenericPMF.S4954728?


File Info:

name: 5A73EC794C3C4F7C241A.mlw
path: /opt/CAPEv2/storage/binaries/3daab5d2215a9d440c157001bb1381bc41e39c63100cfe9b0c099abd29699ccd
crc32: D6780CAF
md5: 5a73ec794c3c4f7c241af24e9c6da4a9
sha1: 50df6255f1af8f6fc882242d78347661a9bc6f1c
sha256: 3daab5d2215a9d440c157001bb1381bc41e39c63100cfe9b0c099abd29699ccd
sha512: 60dc8fb75aec465cf02dc087cf504bd498d0cbf40f49435495678bdeeea8cb383ffdc011c9cc7c851bf6380038c7ae7fd06f6d4a829f57d62044f17dcf11648e
ssdeep: 12288:YWYqnwTrEa888888888888W88888888888XeZ6Ta8v2qUWrcwIdCGaaUE3321WuB:fYqwTYnUT6qUMcp9pQ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A9C4F103B3C30871F57E0E7988A59158BD1EB9692EE5701E7CF8CD4E08BD2D148B99E6
sha3_384: d8f0ceea988822cc7f07d80864115e2fbac40370a681339a57689fe9b4e5ec8d2fd4f07683fb4d0588732aa6c65888a7
ep_bytes: 558becb9080000006a006a004975f953
timestamp: 2013-10-31 10:13:11

Version Info:

CompanyName: IObit
FileDescription: Driver Backup Package
FileVersion: 1.1.0.0
InternalName: UpdateDB
LegalCopyright: Copyright© 2013 IObit. All Rights Reserved.
LegalTrademarks: IObit
OriginalFilename: SfxStub.exe
ProductName: Driver Booster
ProductVersion: 1.1.0.0
Comments: Driver Database Updater
Translation: 0x0409 0x04e4

Trojan.GenericPMF.S4954728 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (moderate confidence)
ClamAVWin.Dropper.Genericrxjd-9884871-0
CAT-QuickHealTrojan.GenericPMF.S4954728
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/Jacard.A.gen!Eldorado
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
Trapminemalicious.high.ml.score
SophosGeneric ML PUA (PUA)
IkarusTrojan.Yarwi
JiangminPacked.Dico.dxt
GoogleDetected
BitDefenderThetaAI:Packer.759C860817
VBA32Trojan.Wacatac
RisingTrojan.Generic@AI.100 (RDML:chobRjEmnhaoTmVGRLLn3g)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.YARW!tr

How to remove Trojan.GenericPMF.S4954728?

Trojan.GenericPMF.S4954728 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment