Trojan

About “Trojan.IGENERICPMF.S2284152” infection

Malware Removal

The Trojan.IGENERICPMF.S2284152 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.IGENERICPMF.S2284152 virus can do?

  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.IGENERICPMF.S2284152?


File Info:

crc32: 2F64887B
md5: 753e1d938c3bccbc9566d636a49aa642
name: 753E1D938C3BCCBC9566D636A49AA642.mlw
sha1: 730c9f38dde28e502f63eaaec0e4a9263a90f7fe
sha256: 1a4ce6ddf89429490f8a1276704e118475f83f53a22200343770040a49f043da
sha512: bd6a86daf27aff014095b3ee141d8e48f8a5717c1f829eed609c7a30e67a7267a2107daf38c35a118f0cdbc38c8ca3db092640b031378f65e586eb7d7e2c77f1
ssdeep: 12288:QCJkauE2kkqwf3eO3h8rL55Bxw5n2Uz3XLlcx1TGBj7k:5Nugkqg313hwjBc1rLKx1TGB8
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright 2011-2016
InternalName: Rakofa
FileVersion: 1.3.13.21
CompanyName: Tenido Ltd.
LegalTrademarks: Tenido Ltd.
ProductName: Sakoketa Sefamog 55 Ricahal
ProductVersion: 3.6.7.18
FileDescription:
OriginalFilename: Rakofa.exe

Trojan.IGENERICPMF.S2284152 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
CAT-QuickHealTrojan.IGENERICPMF.S2284152
CylanceUnsafe
SangforVirus.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWAdware ( 005393151 )
K7AntiVirusAdware ( 005393151 )
CyrenW32/DealPly.U.gen!Eldorado
ESET-NOD32a variant of Win32/DealPly.WC potentially unwanted
APEXMalicious
AvastWin32:DealPly-AJ [Adw]
CynetMalicious (score: 100)
NANO-AntivirusRiskware.Win32.DealPly.ezrgdt
MicroWorld-eScanAdware.DealPly.1.Gen
TencentMalware.Win32.Gencirc.114cdf39
Ad-AwareAdware.DealPly.1.Gen
SophosDealPly Updater (PUA)
ComodoApplicUnwnt@#1e1tu7dfgklec
BitDefenderThetaGen:NN.ZelphiF.34236.FK0@ayAQ3Eoi
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.hh
FireEyeGeneric.mg.753e1d938c3bccbc
EmsisoftAdware.DealPly.1.Gen (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.DealPly.kfob
AviraHEUR/AGEN.1125473
ArcabitAdware.DealPly.1.Gen
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.DealPly.gen
MicrosoftTrojan:Win32/Wacatac.A!ml
AhnLab-V3PUP/Win.DealPly.R417066
Acronissuspicious
MAXmalware (ai score=99)
MalwarebytesMachineLearning/Anomalous.100%
PandaTrj/Genetic.gen
RisingAdware.DealPly!1.AA42 (CLASSIC)
IkarusPUA.DealPly
eGambitUnsafe.AI_Score_99%
FortinetAdware/DealPly
AVGWin32:DealPly-AJ [Adw]
Paloaltogeneric.ml

How to remove Trojan.IGENERICPMF.S2284152?

Trojan.IGENERICPMF.S2284152 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment