Trojan

Trojan.Win32.Bingoml.fhgr information

Malware Removal

The Trojan.Win32.Bingoml.fhgr is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Bingoml.fhgr virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Win32.Bingoml.fhgr?


File Info:

name: FC7649E33D24F4F7AB29.mlw
path: /opt/CAPEv2/storage/binaries/be4ba9826a5a15d681e8cd07a20d705e171ab6615ec9e02519a97642428764bc
crc32: 0315661D
md5: fc7649e33d24f4f7ab295ba72726e5c2
sha1: 8560a4eb5db98ef087d549c686aae88ae41cbb34
sha256: be4ba9826a5a15d681e8cd07a20d705e171ab6615ec9e02519a97642428764bc
sha512: 7b933fb13e0bfb43bdf93ad880269fbbacef995da5650536429f4afcafe6fad1b93b9145fd267e90e3b5479445a7220eda3180299a822c845d7085bb0da0e26f
ssdeep: 49152:uFrSxMs9G5pum8GLjrDOvaj16Tql0N3KDxqGdY+xOO5380ZTnqOjaOBFHe078+iG:upSBA5BqUqR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T162A57A39F649AD22E08F177187A669A6A33A6D38B7FF5123367DFD25EA76340D404300
sha3_384: 66e04540de93708afdd9e0ef6a2395b7c1958fd763ac77df3658bf3e4b2b6c542270867fbde8863fc78230d8c6fa489e
ep_bytes: 6894184000e8eeffffff000000000000
timestamp: 2021-03-29 09:43:26

Version Info:

CompanyName: 厦门智业软件公司
FileDescription: Charge
FileVersion: 8.0.2.9506
InternalName: PB 8
LegalCopyright: Copyright (c) 1997 - 2008 ZHIY Corporation
ProductName: 收费工作站
ProductVersion: Version 4.1
Translation: 0x0409 0x1252

Trojan.Win32.Bingoml.fhgr also known as:

BkavW32.AIDetect.malware2
DrWebBackDoor.WinShell.74
MicroWorld-eScanGen:Trojan.Heur.D.cGW@d0Ck0Ypb
FireEyeGeneric.mg.fc7649e33d24f4f7
ALYacGen:Trojan.Heur.GC.cm0@ujzYTbab1
CylanceUnsafe
SangforVISUAL BASIC4
Cybereasonmalicious.33d24f
BitDefenderThetaAI:Packer.4A762B4D1D
CyrenW32/ABRisk.IQCI-8734
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/WinShell.AA
ClamAVWin.Packed.Agent-9885051-0
KasperskyTrojan.Win32.Bingoml.fhgr
BitDefenderGen:Trojan.Heur.D.cGW@d0Ck0Ypb
AvastWin32:MalwareX-gen [Trj]
Ad-AwareGen:Trojan.Heur.D.cGW@d0Ck0Ypb
EmsisoftGen:Trojan.Heur.D.cGW@d0Ck0Ypb (B)
VIPREGen:Trojan.Heur.D.cGW@d0Ck0Ypb
McAfee-GW-EditionBehavesLike.Win32.Ipamor.vh
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
GDataGen:Trojan.Heur.GC.cm0@ujzYTbab1
AviraTR/Crypt.CFI.Gen
MAXmalware (ai score=82)
Antiy-AVLTrojan/Generic.ASMalwS.6C82
ArcabitTrojan.Heur.D.E42EC7
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 99)
McAfeeArtemis!5C56337E9B82
VBA32BScope.Backdoor.VB
APEXMalicious
RisingTrojan.Generic@AI.89 (RDML:y66h7HAAGO0AxGmPNbM3KQ)
IkarusTrojan-Dropper.Agent
FortinetW32/PossibleThreat
AVGWin32:MalwareX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Win32.Bingoml.fhgr?

Trojan.Win32.Bingoml.fhgr removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment