Trojan

Trojan.Win32.Bingoml.dill information

Malware Removal

The Trojan.Win32.Bingoml.dill is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Bingoml.dill virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Created a process from a suspicious location
  • Creates a copy of itself

How to determine Trojan.Win32.Bingoml.dill?


File Info:

name: AA838BA5EA56D72CC971.mlw
path: /opt/CAPEv2/storage/binaries/2731becb576a211854d2c5272e0105fe4de62d59984f3345eb9dc126897ebb24
crc32: 957233EC
md5: aa838ba5ea56d72cc971c499f85cab41
sha1: 8894bc18988ad37a3e12d75c72d6190aa4eeae6b
sha256: 2731becb576a211854d2c5272e0105fe4de62d59984f3345eb9dc126897ebb24
sha512: e49a1dd77048fd647203da0d695f33ad46f40ec98df6a5ac62a9f09a638e8fa6d5bbcd2e9dcb1497e16ebbc5655bb4ed3e4be06f0cf7e70ddc165403d96fd54c
ssdeep: 3072:5SouLXXSzeAUfpQSZJ+zv64Ale+HNLtU8OWyxF733Z:5Sv0R8QSvQ6HNptOPznZ
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1CBF3BEF329C3264CEC637E7649071EE0729A4527B4B56B0E9E907BE82D73B1113F8598
sha3_384: 48c8254d8387a9f034e85da634e6815d542f6b626e72600fc717e7da914b2728d30937086049aacb79ab43e994a6192f
ep_bytes: b9b45f34d94f68d885400081ef36a3a2
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Bingoml.dill also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Copak.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.aa838ba5ea56d72c
McAfeeGlupteba-FTSD!AA838BA5EA56
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 00577ea11 )
AlibabaTrojan:Win32/Bingoml.ff92def9
K7GWTrojan ( 00577ea11 )
Cybereasonmalicious.5ea56d
CyrenW32/Zbot.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan.Win32.Bingoml.dill
BitDefenderGen:Variant.Razy.900994
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanGen:Variant.Razy.900994
AvastWin32:Trojan-gen
TencentTrojan.Win32.Copak.wd
Ad-AwareGen:Variant.Razy.900994
EmsisoftGen:Variant.Razy.900994 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.Siggen14.7487
TrendMicroTROJ_GEN.R002C0DA922
McAfee-GW-EditionBehavesLike.Win32.Glupteba.cc
SophosMal/Generic-R + Troj/Agent-BGOS
GDataGen:Variant.Razy.900994
JiangminTrojan.Copak.bqfo
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.Injector
GridinsoftRansom.Win32.Wacatac.sa
ArcabitTrojan.Razy.DDBF82
MicrosoftTrojan:Win32/Glupteba.DB!MTB
AhnLab-V3Malware/Win32.RL_Generic.R293305
BitDefenderThetaGen:NN.ZexaF.34160.kuZ@aeSC5Sd
ALYacGen:Variant.Razy.900994
MAXmalware (ai score=80)
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Crypt
TrendMicro-HouseCallTROJ_GEN.R002C0DA922
RisingTrojan.Injector!1.CD26 (CLOUD)
YandexTrojan.Copak!lLE/c2rfezY
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Copak.AGMG!tr
AVGWin32:Trojan-gen
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan.Win32.Bingoml.dill?

Trojan.Win32.Bingoml.dill removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment