Trojan

Trojan.Win32.Bingoml.cqhb removal guide

Malware Removal

The Trojan.Win32.Bingoml.cqhb is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Bingoml.cqhb virus can do?

  • Reads data out of its own binary image
  • Drops a binary and executes it
  • A scripting utility was executed
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs

How to determine Trojan.Win32.Bingoml.cqhb?


File Info:

crc32: 72325A8E
md5: 8a75a3fe579232d58e722548352e5a4c
name: 8A75A3FE579232D58E722548352E5A4C.mlw
sha1: 8eef52e4b1a79fd60c5517613f878ea4defcb307
sha256: 9d69cdec1a35d62fd7a9898f4c191befde356a6ee79b6aa8b51f7b20d08ddbee
sha512: ff180c4f3bb7372bc12824e10f06b88e6201c9c8bddbf2af880e5b060231331b7e5edf4da9a7c17e838840bf984aa28797071bee038c4314c7a0e82fb5791039
ssdeep: 196608:91OKMiz+TDv++mpvgJg0f3NK1aDUuwnXZLfbl/:3OKtz8Uvx0f3cMDixfZ/
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (c) 1999-2010 Igor Pavlov
InternalName: 7zS.sfx
FileVersion: 9.20
CompanyName: Igor Pavlov
ProductName: 7-Zip
ProductVersion: 9.20
FileDescription: 7z Setup SFX
OriginalFilename: 7zS.sfx.exe
Translation: 0x0409 0x04b0

Trojan.Win32.Bingoml.cqhb also known as:

K7AntiVirusAdware ( 00581e241 )
LionicTrojan.Win32.Bingoml.4!c
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop18.48436
CynetMalicious (score: 100)
CAT-QuickHealTrojan.IGENERIC
ALYacGen:Variant.Jaik.48175
CylanceUnsafe
AlibabaTrojan:Win32/Bingoml.d3f6d87b
K7GWAdware ( 00581e241 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Adware.Neoreklami.LI
APEXMalicious
AvastWin32:Adware-gen [Adw]
KasperskyTrojan.Win32.Bingoml.cqhb
BitDefenderGen:Variant.Jaik.48175
MicroWorld-eScanGen:Variant.Jaik.48175
TencentWin32.Trojan.Bingoml.Ecan
Ad-AwareGen:Variant.Jaik.48175
SophosGeneric PUA IO (PUA)
BitDefenderThetaGen:NN.ZexaF.34266.@JW@amLrSkc
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0WK921
McAfee-GW-EditionBehavesLike.Win32.PUP.vc
FireEyeGen:Variant.Jaik.48175
EmsisoftGen:Variant.Jaik.48175 (B)
SentinelOneStatic AI – Suspicious SFX
AviraHEUR/AGEN.1141075
Antiy-AVLTrojan/Generic.ASMalwS.34CC037
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataGen:Variant.Jaik.48175
McAfeeArtemis!8A75A3FE5792
MAXmalware (ai score=82)
VBA32Adware.Agent
MalwarebytesAdware.Neoreklami
TrendMicro-HouseCallTROJ_GEN.R002C0WK921
RisingAdware.Neoreklami!1.ABC4 (CLASSIC)
YandexTrojan.Bingoml!1c8pywNcuo8
IkarusPUA.Neoreklami
FortinetAdware/Neoreklami
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Trojan.Win32.Bingoml.cqhb?

Trojan.Win32.Bingoml.cqhb removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment