Backdoor

Backdoor.Bot.Gen information

Malware Removal

The Backdoor.Bot.Gen is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Bot.Gen virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Backdoor.Bot.Gen?


File Info:

crc32: 7545F8B8
md5: 0dd64cc5bf3bb0dd00d6db6c02be55d9
name: 0DD64CC5BF3BB0DD00D6DB6C02BE55D9.mlw
sha1: d1d0b95a940c40a6a375a0ab1d9b162fe7650314
sha256: 8d33acf74f5080a7acb1157438984c53fbaa87b5ba72353cd56bcc8557c479ce
sha512: 7f1fe621da4cbdacb10be1d12c158be7df177eef8d69d9341e5050aec30bdd0a05104dd7c2cd74a0a7ddf9731620977944fe5246bf1475d72144de8b9691f9bd
ssdeep: 24576:ud32KvlvnuiBtqXLEQ8Ef/efPFPmlJ63d5k3Lb9v:udGKvlvuKk8EfAs634Hl
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2011
InternalName: Shogun2
FileVersion: 1, 1, 0, 0
CompanyName: The Creative Assembly Ltd
ProductName: Total War: SHOGUN 2
ProductVersion: 1, 0, 0, 0
FileDescription: Total War: SHOGUN 2
OriginalFilename: Shogun2.exe
Translation: 0x0809 0x04b0

Backdoor.Bot.Gen also known as:

BkavW32.AIDetectVM.malware2
K7AntiVirusTrojan ( 0055e39b1 )
DrWebBackDoor.Bifrost.21953
CynetMalicious (score: 100)
ALYacBackdoor.Bifrose
CylanceUnsafe
ZillyaTrojan.Inject.Win32.57555
SangforMalware
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojan:Win32/Dynamer.785dd9b7
K7GWTrojan ( 0055e39b1 )
Cybereasonmalicious.5bf3bb
TrendMicroTROJ_GEN.R002C0DED20
CyrenW32/Bifrost.AD.gen!Eldorado
SymantecW32.IRCBot.NG
ESET-NOD32a variant of Win32/Packed.MoleboxVS.L suspicious
ZonerTrojan.Win32.8569
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Trojan.Agent-1364127
GDataBackdoor.Bot.211486
KasperskyHEUR:Trojan.Win32.Yakes.gen
BitDefenderBackdoor.Bot.211486
NANO-AntivirusTrojan.Win32.Llac.dbeoou
ViRobotTrojan.Win32.S.Agent.909128
SUPERAntiSpywareTrojan.Agent/Gen-Bifrose
MicroWorld-eScanBackdoor.Bot.211486
TencentMalware.Win32.Gencirc.10bc22a3
Ad-AwareBackdoor.Bot.211486
ComodoMalware@#12z0zghzkad13
F-SecureHeuristic.HEUR/AGEN.1103755
BitDefenderThetaGen:NN.ZexaF.34144.3y3@a0WTPin
VIPRETrojan.Win32.Generic!BT
Invinceaheuristic
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.0dd64cc5bf3bb0dd
EmsisoftBackdoor.Bot.211486 (B)
SentinelOneDFI – Suspicious PE
F-ProtW32/Bifrost.AD.gen!Eldorado
Endgamemalicious (high confidence)
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1103755
MicrosoftTrojan:Win32/Dynamer!rfn
JiangminTrojan/Generic.zmcp
ArcabitBackdoor.Bot.D33A1E
AegisLabTrojan.Win32.Generic.lx5x
ZoneAlarmHEUR:Trojan.Win32.Yakes.gen
TACHYONTrojan/W32.Inject.909128
AhnLab-V3Trojan/Win32.Refroso.C116682
McAfeeGenericRXAH-GB!0DD64CC5BF3B
MAXmalware (ai score=100)
VBA32Trojan.Inject
MalwarebytesBackdoor.Bot.Gen
PandaGeneric Malware
TrendMicro-HouseCallTROJ_GEN.R002C0DED20
RisingTrojan.Dynamer!8.3A0 (CLOUD)
YandexBackdoor.Bifrose!8xytkf6lD/k
IkarusBackdoor.Win32.Bifrose
eGambitUnsafe.AI_Score_95%
FortinetW32/Generic.AC.5E0C8!tr
AVGWin32:Malware-gen
Qihoo-360Generic/HEUR/Malware.QVM20.Gen

How to remove Backdoor.Bot.Gen?

Backdoor.Bot.Gen removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment