Backdoor

Should I remove “Backdoor.Generic.116264”?

Malware Removal

The Backdoor.Generic.116264 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Generic.116264 virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Backdoor.Generic.116264?


File Info:

name: 08B4685898C70325AA14.mlw
path: /opt/CAPEv2/storage/binaries/3831bb8980f7f9a2c365a3eb7a9ab244942d95c4c86fbbdff255d23f7cf4819f
crc32: A35071E1
md5: 08b4685898c70325aa14860b5d57d3f9
sha1: 744232450759721b1fe31a865d437d2020e01821
sha256: 3831bb8980f7f9a2c365a3eb7a9ab244942d95c4c86fbbdff255d23f7cf4819f
sha512: d7f9295ffac8bd8811dfacd72be1a36d87a23486ded4063915122ee88fedb4e40397a0d0aebe1d49fd8deadef0964b56b967047d848ba524786542f47e751f00
ssdeep: 98304:nomR+6GKK6L28GcZLQn4f93WwzgyiV13z2LAAQLxEPhVpmefx8+QbZOiiW2o/trG:omwlKKe2ZaeHSgyiVJxipBfvuOiiWLt
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T128563306F9C01DB4E23214B7B87739A71724BF0AD92AEA04E77C099C99D2ED517C274B
sha3_384: 88afa9b5dadb0f196beb12ec6ab1ae0a72d544c2279baaf39c78a496792d044504b21d37f74dce87139e8589dd98256b
ep_bytes: 558bec83c4b853565733c08945f08945
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Backdoor.Generic.116264 also known as:

LionicTrojan.Win32.Delf.4!c
MicroWorld-eScanBackdoor.Generic.116264
FireEyeBackdoor.Generic.116264
ALYacBackdoor.Generic.116264
BitDefenderBackdoor.Generic.116264
CyrenW32/Backdoor.YDCS-3703
SymantecTrojan.Gen.2
TrendMicro-HouseCallTROJ_GEN.R002H07KN21
Paloaltogeneric.ml
KasperskyUDS:Trojan.Win32.Delf.gen
AlibabaTrojan:Win32/Generic.fa4f1f03
NANO-AntivirusTrojan.Win32.Delf.dhknqv
SophosMal/Generic-S
McAfee-GW-EditionArtemis!Trojan
EmsisoftBackdoor.Generic.116264 (B)
JiangminTrojan.Delf.bwx
AviraTR/Delf.Agent.kmmgl
MAXmalware (ai score=81)
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataBackdoor.Generic.116264
McAfeeArtemis!08B4685898C7
VBA32Trojan.Delf
PandaTrj/CI.A
FortinetW32/PossibleThreat
AVGWin32:Malware-gen
Cybereasonmalicious.898c70
AvastWin32:Malware-gen

How to remove Backdoor.Generic.116264?

Backdoor.Generic.116264 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment