Trojan

About “Trojan.Win32.Bingoml.elsc” infection

Malware Removal

The Trojan.Win32.Bingoml.elsc is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Bingoml.elsc virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Installs itself for autorun at Windows startup

How to determine Trojan.Win32.Bingoml.elsc?


File Info:

name: B1DA0D8FE37E88BEB86B.mlw
path: /opt/CAPEv2/storage/binaries/56071553ce753a34f921aa69a8e72c093f473ca1ad3101d631d52bacbe20d7a6
crc32: F6913D48
md5: b1da0d8fe37e88beb86b7074d413d12a
sha1: 503906822ebc2930be5040e89785b01353bfcdc7
sha256: 56071553ce753a34f921aa69a8e72c093f473ca1ad3101d631d52bacbe20d7a6
sha512: 0706dfc6b81ca67ccd37b70d8f94c3f1e7d07bac5f97fe750c26b295a83ac6c759ee3a9c8408979c7c712a7f02ea7e075f7bf4c18cc080895b42ae2d3a806da5
ssdeep: 98304:x4kIyEjPctWz2osZIYhv3pYvw+b+vM2Q/Y5h1YaGcfd5KWpHyS:x4LykPct1nIYhRsyvE/YRYrcl5KPS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C1769D41E9DB50F5EF831A3008ABA26F2330A9094735DFC3E654AE7BE8776D11E32255
sha3_384: 748f24564800c68103d21401df070c4be4434bc3eec48c7067f4629452af4c17c41ec2fab32bf5bec9aed2743d43cc8b
ep_bytes: e96bdcffffcccccccccccccccccccccc
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Bingoml.elsc also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Bingoml.4!c
MicroWorld-eScanTrojan.GenericKD.49093981
FireEyeTrojan.GenericKD.49093981
ALYacTrojan.GenericKD.49093981
CylanceUnsafe
SangforTrojan.Win32.Bingoml.elsc
K7AntiVirusRiskware ( 00584baa1 )
AlibabaTrojan:Win32/Bingoml.f7f6a972
K7GWRiskware ( 00584baa1 )
CyrenW32/ABTrojan.GUJC-8037
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan.Win32.Bingoml.elsc
BitDefenderTrojan.GenericKD.49093981
NANO-AntivirusTrojan.Win32.Bingoml.jpciaz
Ad-AwareTrojan.GenericKD.49093981
DrWebTrojan.DownLoader44.62609
TrendMicroTROJ_GEN.R002C0WFA22
McAfee-GW-EditionBehavesLike.Win32.Generic.vh
EmsisoftTrojan.GenericKD.49093981 (B)
GDataTrojan.GenericKD.49093981
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=86)
ArcabitTrojan.Generic.D2ED1D5D
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 99)
McAfeeArtemis!B1DA0D8FE37E
VBA32BScope.Trojan-Spy.Zbot
TrendMicro-HouseCallTROJ_GEN.R002C0WFA22
RisingTrojan.Generic@AI.81 (RDML:826lWqcCS7LtLtf46RIN6A)
YandexTrojan.Bingoml!EFsGOMtfSUc
MaxSecureTrojan.Malware.184326792.susgen
FortinetW32/PossibleThreat
BitDefenderThetaGen:NN.ZexaF.34742.@3W@ay6z@Vc
PandaTrj/Chgt.AB

How to remove Trojan.Win32.Bingoml.elsc?

Trojan.Win32.Bingoml.elsc removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment