Trojan

Trojan.Win32.Bingoml.dmff (file analysis)

Malware Removal

The Trojan.Win32.Bingoml.dmff is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Bingoml.dmff virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Win32.Bingoml.dmff?


File Info:

name: 741F46103FA8206C53AB.mlw
path: /opt/CAPEv2/storage/binaries/b6f1c74a4edf466f1fd36d6dd9b3cc0cd6f1feea9d57b55c8bb2701be912826b
crc32: 3C726F71
md5: 741f46103fa8206c53ab0fedd1dde07d
sha1: 2537c7756a9e8b75e4ecc8ce4194755de66e0ccb
sha256: b6f1c74a4edf466f1fd36d6dd9b3cc0cd6f1feea9d57b55c8bb2701be912826b
sha512: f629d46f172d892e8565c55569d4d52cd36ff51ff97f00af7533101d870495a72b1913bccce7dcc14fe4848cade96b31db3ece4d966cfbb685a4e33dfd115828
ssdeep: 768:6JcucGTH/l+aorWIUY1iNfxQXx4lAEh1sZQv5MZt5LVFGryxGFNrBvXG9MRkRjNf:vglhr9NfeOrMb5LhoZlAMcjUBi
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F143021603C1BE64F07D3FBC79D87F2B39ED8C8C215491A8088F925DA1E4934656B4EB
sha3_384: a2b86da8945220bc7379efd1a4cd147aaf8d93837564d27661871c811647b066bfad01030062f46ec1a5863e62610a58
ep_bytes: 64a130000000061f669c669d464e33c1
timestamp: 2011-01-29 20:49:26

Version Info:

0: [No Data]

Trojan.Win32.Bingoml.dmff also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Bingoml.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Midie.47122
FireEyeGeneric.mg.741f46103fa8206c
CAT-QuickHealTrojan.IgenericRI.S26222255
McAfeeGenericRXAA-AA!741F46103FA8
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0058dc961 )
AlibabaTrojan:Win32/Bingoml.3a40d2cc
K7GWTrojan ( 0058dc961 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaAI:Packer.05AE947D1E
CyrenW32/Cosmu.K.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Agent.OKR
APEXMalicious
ClamAVWin.Malware.Midie-9936226-0
KasperskyTrojan.Win32.Bingoml.dmff
BitDefenderGen:Variant.Midie.47122
NANO-AntivirusVirus.Win32.Gen.ccmw
AvastWin32:Agent-AMRX [Trj]
TencentWin32.Trojan.Bingoml.Aeod
SophosML/PE-A + Mal/Inject-CG
DrWebTrojan.Siggen16.38424
TrendMicroTROJ_KRYPTK.SM10
McAfee-GW-EditionBehavesLike.Win32.Generic.qc
EmsisoftGen:Variant.Midie.47122 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Crypt.ZPACK.Gen
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ViRobotTrojan.Win32.Z.Midie.57344.ZT
ZoneAlarmTrojan.Win32.Bingoml.dmff
GDataGen:Variant.Midie.47122
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Gampass.R467614
VBA32Malware-Cryptor.Win32.General.4
ALYacGen:Variant.Midie.47122
MAXmalware (ai score=82)
MalwarebytesMalware.AI.3766743511
TrendMicro-HouseCallTROJ_KRYPTK.SM10
RisingTrojan.Tiggre!8.ED98 (CLOUD)
YandexTrojan.GenAsa!g4uRYh33TJE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Cosmu.AO!tr
AVGWin32:Agent-AMRX [Trj]
PandaTrj/Genetic.gen

How to remove Trojan.Win32.Bingoml.dmff?

Trojan.Win32.Bingoml.dmff removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment