Trojan

Should I remove “Trojan.IGENERICPMF.S2873134”?

Malware Removal

The Trojan.IGENERICPMF.S2873134 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.IGENERICPMF.S2873134 virus can do?

  • Creates RWX memory
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.IGENERICPMF.S2873134?


File Info:

crc32: 2AF871D9
md5: 843efcc7c5b76c9ded0dc8b3795dc5d9
name: 843EFCC7C5B76C9DED0DC8B3795DC5D9.mlw
sha1: 6e2f5da57d1dbabc63505252f5193df0c71fcf51
sha256: 211795b3c1600395ce1e685009c1c92b386b596edc8de92bba968b38ef154a84
sha512: a40258b736a9c1fb32f39b3631140e6e022b5b07e04550c5041277a2ed122a1beb3cb9cc1119a0c23d62c8c135e55b1c2d7585caa71b547bf27a3b87d5d462d7
ssdeep: 24576:QU3JgSQuUp2Cfb1AJCuUoG3ftHkdG39azDBZStMcEtwGBfZK1br8RC95xhWu2cK:P5gtVootH4zD7StM9/0brR95xUcKv
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Delori xa9 2010-2015
InternalName: mida
FileVersion: 2.8.7.34
CompanyName: Delori
LegalTrademarks: 2011-2017
ProductName: Karegebu
ProductVersion: 3.2.21.42
FileDescription: Basu
OriginalFilename: mida.exe

Trojan.IGENERICPMF.S2873134 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusAdware ( 005497bb1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealTrojan.IGENERICPMF.S2873134
CylanceUnsafe
ZillyaAdware.DealPly.Win32.149586
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWAdware ( 005497bb1 )
Cybereasonmalicious.7c5b76
CyrenW32/DealPly.AI.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/DealPly.QB potentially unwanted
APEXMalicious
AvastWin32:DealPly-AJ [Adw]
Kasperskynot-a-virus:VHO:AdWare.Win32.DealPly.gen
BitDefenderAdware.DealPly.1.Gen
NANO-AntivirusVirus.Win32.Gen.ccmw
MicroWorld-eScanAdware.DealPly.1.Gen
TencentMalware.Win32.Gencirc.10c8ceb3
Ad-AwareAdware.DealPly.1.Gen
SophosDealPly Updater (PUA)
ComodoApplicUnwnt@#e6jtuluc7fwh
BitDefenderThetaGen:NN.ZelphiF.34294.oU0@aq1ajDbi
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.vh
FireEyeAdware.DealPly.1.Gen
EmsisoftAdware.DealPly.1.Gen (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.DealPly.ilig
AviraHEUR/AGEN.1104226
eGambitUnsafe.AI_Score_96%
Antiy-AVLTrojan/Generic.ASMalwS.2542E4D
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataAdware.DealPly.1.Gen
AhnLab-V3PUP/Win32.DealPly.C3143021
Acronissuspicious
McAfeeGenericR-NKE!843EFCC7C5B7
MAXmalware (ai score=98)
VBA32Adware.DealPly
MalwarebytesMalware.AI.127392138
PandaTrj/Genetic.gen
RisingAdware.DealPly!1.AA42 (CLASSIC)
YandexPUA.DealPly!03Yiv/LXayU
IkarusPUA.DealPly
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/AGEN.1033829!tr
AVGWin32:DealPly-AJ [Adw]
Paloaltogeneric.ml

How to remove Trojan.IGENERICPMF.S2873134?

Trojan.IGENERICPMF.S2873134 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment