Trojan

Trojan.IGENERICPMF.S3577729 (file analysis)

Malware Removal

The Trojan.IGENERICPMF.S3577729 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.IGENERICPMF.S3577729 virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Trojan.IGENERICPMF.S3577729?


File Info:

crc32: C4D7F978
md5: 2b60fc52c0a3739148662c6a84f0e329
name: 2B60FC52C0A3739148662C6A84F0E329.mlw
sha1: bae899cce9cf7f3b344589fb0d14b10248685e14
sha256: 1e0eba71d0e3ca546c9e02d6d0b443b5fd14f5a38e091a6ccc26d82a21bfb094
sha512: 6bceed5cb1eeb97b02e3e0d8120f807c9cddec9ffaf677e018f3cdba3fe4e0be3765fa64e723280037ed9f38c128d2430e296ac9789bb8dcf77866e3b63ab317
ssdeep: 12288:R/IMvxpkofTvVXrRQFGf1G4b1hk5vyWeGYX1+HYAKua31hRlf6FOrpyjBIJLVanw:GMvxpVTNXrRgkY4hiyWs4YAu7Gz8W0Ce
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: Installer/Uninstaller
FileVersion: 28,0,0,161
CompanyName: Systems Incorporated
ProductName: Installer/Uninstaller
ProductVersion: 28,0,0,161
FileDescription: Installer/Uninstaller
OriginalFilename: FlashUtil.exe
Translation: 0x0409 0x04b0

Trojan.IGENERICPMF.S3577729 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053c4e01 )
Elasticmalicious (high confidence)
DrWebTrojan.InstallCube.3714
CynetMalicious (score: 100)
CAT-QuickHealTrojan.IGENERICPMF.S3577729
ALYacGen:Variant.Zusy.363659
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.1483377
SangforSuspicious.Win32.Save.a
AlibabaTrojan:Win32/Katusha.5835341c
K7GWTrojan ( 0053c4e01 )
Cybereasonmalicious.2c0a37
CyrenW32/ICLoader.BL.gen!Eldorado
SymantecPUA.ICLoader
ESET-NOD32a variant of Win32/Kryptik.GKTL
APEXMalicious
AvastWin32:DangerousSig [Trj]
ClamAVWin.Packed.Icloader-7057426-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Zusy.363659
NANO-AntivirusTrojan.Win32.InstallCube.fhnitp
MicroWorld-eScanGen:Variant.Zusy.363659
TencentMalware.Win32.Gencirc.10cc6064
Ad-AwareGen:Variant.Zusy.363659
SophosGeneric PUA LK (PUA)
ComodoApplication.Win32.ICLoader.GS@84429a
BitDefenderThetaGen:NN.ZexaF.34266.or1@a81qtmmi
McAfee-GW-EditionGenericRXGM-DQ!2B60FC52C0A3
FireEyeGeneric.mg.2b60fc52c0a37391
EmsisoftApplication.AdFile (A)
SentinelOneStatic AI – Malicious PE
JiangminPacked.Katusha.dvlb
AviraTR/ICLoader.Gen8
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.2804D4A
MicrosoftPUADlManager:Win32/InstallCube
ArcabitTrojan.Zusy.D58C8B
GDataGen:Variant.Zusy.363659
AhnLab-V3PUP/Win32.ICLoader.R237220
Acronissuspicious
McAfeeGenericRXGM-DQ!2B60FC52C0A3
MAXmalware (ai score=100)
VBA32BScope.Trojan.InstallCube
MalwarebytesAdware.FileTour.BatBitRst
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.AA23 (CLASSIC)
YandexTrojan.GenAsa!PPMCFhdOlIA
IkarusPUA.ICLoader
MaxSecurePacked.Packed.WIN32.Katusha.gen_212003
FortinetW32/CoinMiner.GYQC!tr
AVGWin32:DangerousSig [Trj]
Paloaltogeneric.ml

How to remove Trojan.IGENERICPMF.S3577729?

Trojan.IGENERICPMF.S3577729 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment