Trojan

Trojan.Win32.Pirminay.cbj removal

Malware Removal

The Trojan.Win32.Pirminay.cbj is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Pirminay.cbj virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Performs HTTP requests potentially not found in PCAP.
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Uses Windows utilities for basic functionality
  • Checks the version of Bios, possibly for anti-virtualization
  • Checks the presence of disk drives in the registry, possibly for anti-virtualization
  • Attempts to modify proxy settings
  • Deletes executed files from disk
  • Collects information to fingerprint the system

How to determine Trojan.Win32.Pirminay.cbj?


File Info:

name: D5AD6BB62AF60B1D50E2.mlw
path: /opt/CAPEv2/storage/binaries/a518d801b66df33f1f525b75dd514c3d77246f32dd4519777578e2e1f13629f8
crc32: 85C191B1
md5: d5ad6bb62af60b1d50e2f8d9d55770c0
sha1: 88f7b568dc5cb23cdbac0f0cf68dfb2c0fa36802
sha256: a518d801b66df33f1f525b75dd514c3d77246f32dd4519777578e2e1f13629f8
sha512: 4a2a396f8e1d64c1be07200376340917996926dd044572e0b6155f8c46b4b3761fa3646a8052cc9d7e56b37c78f7606aa2fe821418f04209931f32fa68ecb1d7
ssdeep: 6144:bvJ58AXev47W4ghRYX80cTvcPFHMMnxygGdECb6PVNFORgbisU71F9zAgnwhDSaf:3xeeWTc8040FHMMxy5dE62HFORgbiL9u
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12684CF13FB75C430E3A661706829CAB62520BEFB2EB16483B7D35D9B2C3D5A1C81171B
sha3_384: 36c4747ace8856a7d6f08fdeb79aa2aea8418ae0634b2821f778cf701b9b3c73e062eeec3fe44255bb853e6f7d72075b
ep_bytes: 558bec6aff689892450068c68a450064
timestamp: 2007-02-02 19:03:33

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Serial Device Driver
FileVersion: 5.2.3790.3959 (srv03_sp2_rtm.070216-1710)
InternalName: serial.sys
LegalCopyright: © Microsoft Corporation. All rights reserved.
OriginalFilename: serial.sys
ProductName: Microsoft® Windows® Operating System
ProductVersion: 5.2.3790.3959
Translation: 0x0409 0x04b0

Trojan.Win32.Pirminay.cbj also known as:

LionicTrojan.Win32.Zbot.lEcN
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Zbot.34
ClamAVWin.Trojan.Agent-369345
McAfeeArtemis!D5AD6BB62AF6
ZillyaTrojan.Pirminay.Win32.2024
SangforTrojan.Win32.AGEN.1001706
K7AntiVirusTrojan ( 0055dd191 )
AlibabaTrojan:Win32/Pirminay.62334cd3
K7GWTrojan ( 0055dd191 )
Cybereasonmalicious.62af60
CyrenW32/FakeAlert.LP.gen!Eldorado
Elasticmalicious (high confidence)
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 99)
KasperskyTrojan.Win32.Pirminay.cbj
BitDefenderGen:Variant.Zbot.34
NANO-AntivirusTrojan.Win32.Pirminay.ocyex
AvastWin32:GenMalicious-SQ [Trj]
TencentWin32.Trojan.Pirminay.Hflw
Ad-AwareGen:Variant.Zbot.34
EmsisoftGen:Variant.Zbot.34 (B)
ComodoMalware@#35pg9of3bo7d7
F-SecureHeuristic.HEUR/AGEN.1227204
DrWebTrojan.MulDrop20.62026
VIPREGen:Variant.Zbot.34
McAfee-GW-EditionBehavesLike.Win32.Generic.fh
FireEyeGeneric.mg.d5ad6bb62af60b1d
SophosML/PE-A + Mal/Ponmocup-A
GDataGen:Variant.Zbot.34
AviraHEUR/AGEN.1227204
MAXmalware (ai score=99)
Antiy-AVLTrojan/Win32.Unknown
KingsoftWin32.Troj.Pirminay.c.(kcloud)
ArcabitTrojan.Zbot.34
ZoneAlarmTrojan.Win32.Pirminay.cbj
MicrosoftTrojan:Win32/Meredrop
GoogleDetected
ALYacGen:Variant.Zbot.34
TACHYONTrojan/W32.Pirminay.376832.B
CylanceUnsafe
RisingTrojan.Generic@AI.90 (RDML:QNhATrw21IHArBW+AQfVag)
IkarusTrojan-Downloader.Win32.Ponmocup
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/Kryptik.ANL!tr
BitDefenderThetaAI:Packer.0FC8F2AB1F
AVGWin32:GenMalicious-SQ [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Win32.Pirminay.cbj?

Trojan.Win32.Pirminay.cbj removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment