Trojan

Trojan.StopPMF.S26304139 (file analysis)

Malware Removal

The Trojan.StopPMF.S26304139 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.StopPMF.S26304139 virus can do?

  • Anomalous binary characteristics

How to determine Trojan.StopPMF.S26304139?


File Info:

name: B9E5BA864CB619C1D099.mlw
path: /opt/CAPEv2/storage/binaries/8b7bc4a2ff5f066401def59e3e635f209c4cba73756bff8ca6071f2760039223
crc32: F39151CF
md5: b9e5ba864cb619c1d099a3064662c236
sha1: b5d89202ca37c688a6de34c337a1b0d2c621ef61
sha256: 8b7bc4a2ff5f066401def59e3e635f209c4cba73756bff8ca6071f2760039223
sha512: ce41b38f662350af24147f1020398ecdf6a172846b3b0b4d9e20a11b31e47ec67451a41eaf62a62a0d165bb5642b8a5173107bae58edc54097bcaf5387d04e36
ssdeep: 196608:ctvoooooooooooooooooooooooooooooooooooooooooooooooooooooooooooon:0voooooooooooooooooooooooooooooI
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CAC65BB1B980DA45E484263C482BDFEC99BDFC845C41074772A83B8BB9B735326A157F
sha3_384: fe99096a538da6a6b8b1c6e76e99e7ffe8c4c94fabde993ca9552f99f674b9a9c9d5935e499af6fc90830ea72502a6cb
ep_bytes: e8ec660000e978feffffcccccccccccc
timestamp: 2021-07-22 21:17:48

Version Info:

InternationalName: bomgvioci.iwa
Copyright: Copyrighz (C) 2021, fudkort
ProjectVersion: 3.10.70.57
Translation: 0x0129 0x07b2

Trojan.StopPMF.S26304139 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Vidar.19
MicroWorld-eScanTrojan.GenericKDZ.82915
FireEyeGeneric.mg.b9e5ba864cb619c1
CAT-QuickHealTrojan.StopPMF.S26304139
McAfeePacked-GEE!B9E5BA864CB6
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0058d3211 )
AlibabaRansom:Win32/StopCrypt.193c7e01
K7GWTrojan ( 0058d3211 )
BitDefenderThetaGen:NN.ZexaF.34212.@tW@a0GTvule
CyrenW32/Qbot.FK.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HOAO
TrendMicro-HouseCallMal_Tofsee
ClamAVWin.Malware.Generic-9936856-0
KasperskyHEUR:Trojan.Win32.Bingoml.gen
BitDefenderTrojan.GenericKDZ.82915
AvastWin32:AceCrypter-B [Cryp]
RisingTrojan.Kryptik!1.DB29 (RDMK:cmRtazo0ua5Ldj6mjKDVVrkvXWxd)
Ad-AwareTrojan.GenericKDZ.82915
EmsisoftTrojan.Crypt (A)
ZillyaTrojan.Kryptik.Win32.3675846
TrendMicroMal_Tofsee
McAfee-GW-EditionBehavesLike.Win32.Generic.wh
SophosML/PE-A + Mal/Agent-AWV
IkarusTrojan.Win32.Raccoon
GDataWin32.Trojan.BSE.1RR0I6
JiangminTrojanSpy.Stealer.nba
MAXmalware (ai score=85)
Antiy-AVLTrojan/Win32.SGeneric
ArcabitTrojan.Generic.D143E3
ZoneAlarmHEUR:Trojan.Win32.Bingoml.gen
MicrosoftRansom:Win32/StopCrypt.PAO!MTB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.MalPE.R466050
VBA32BScope.TrojanSpy.Stealer
ALYacTrojan.GenericKDZ.82915
MalwarebytesTrojan.MalPack.GS
APEXMalicious
YandexTrojan.Kryptik!eD6RqCwYj4A
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/GenKryptik.ERHN!tr
AVGWin32:AceCrypter-B [Cryp]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Trojan.StopPMF.S26304139?

Trojan.StopPMF.S26304139 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment