Trojan

Trojan.KeygenPMF.S3026518 removal

Malware Removal

The Trojan.KeygenPMF.S3026518 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.KeygenPMF.S3026518 virus can do?

  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Anomalous binary characteristics
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Trojan.KeygenPMF.S3026518?


File Info:

name: 72860B658AB8657F0869.mlw
path: /opt/CAPEv2/storage/binaries/4bbd538e5b0b3dde6cca75fbdd7dba715d31773e3562f3931dcb5456ffe3c914
crc32: 055F06F0
md5: 72860b658ab8657f08694f3bcfac3874
sha1: 1483d09ec61de92fbf6946b07c5411b5a4bb8fb8
sha256: 4bbd538e5b0b3dde6cca75fbdd7dba715d31773e3562f3931dcb5456ffe3c914
sha512: 2846521a0ed53a9fd4a19b9adce916ec53d431fda030c03b1431c74e17c770fc120b36a23e6d8562e8f4d7b3daa7028f327f9df220971987b009c5d0bfa22e47
ssdeep: 12288:Ac2ldltF9jWPwOF94sd0WLOpK2AAYuoUwwZ1:dxF94sdzLOA2quFZ
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T17615FA1A2E45B45FE24841310EFC8A285164BDA55E7E27B33508BD3CE7F7EE22E95B04
sha3_384: 58f0a44879a44c1787fd60c5f3d586f922b40c45c4c621b267252ef349de2b60c993f70e5797fc044c25a4790ffe8e51
ep_bytes: 558bec81c400fcffff837d0c01750bff
timestamp: 2012-12-21 20:59:50

Version Info:

0: [No Data]

Trojan.KeygenPMF.S3026518 also known as:

ClamAVWin.Tool.Patcher-9780678-0
FireEyeGeneric.mg.72860b658ab8657f
CAT-QuickHealTrojan.KeygenPMF.S3026518
SkyhighBehavesLike.Win32.Generic.cm
McAfeeGenericRXEM-OL!72860B658AB8
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/grayware_confidence_100% (D)
BitDefenderThetaGen:NN.ZedlaF.36744.1u4@aqYYALh
SymantecSMG.Heur!gen
Elasticmalicious (high confidence)
ESET-NOD32Win32/HackTool.Patcher.T potentially unsafe
CynetMalicious (score: 100)
Trapminemalicious.moderate.ml.score
SophosGeneric Patcher (PUA)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.fonq
WebrootW32.Trojan.Gen
GoogleDetected
Antiy-AVLHackTool/Win32.Patcher
Kingsoftmalware.kb.a.897
MicrosoftPUA:Win32/Keygen
GDataWin32.Trojan.PSE.1GI7FPD
VaristW32/A-fa98fed2!Eldorado
AhnLab-V3Unwanted/Win32.Patcher.R329201
Cylanceunsafe
RisingTrojan.Generic@AI.89 (RDML:yP1LX9G6GJvQIfw2+3/KBA)
Ikaruspossible-Threat.Hacktool.Patcher
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/Patcher
DeepInstinctMALICIOUS

How to remove Trojan.KeygenPMF.S3026518?

Trojan.KeygenPMF.S3026518 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment