Backdoor

About “Backdoor.Generic.367920” infection

Malware Removal

The Backdoor.Generic.367920 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Generic.367920 virus can do?

  • Creates RWX memory
  • A process created a hidden window
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Russian
  • Installs itself for autorun at Windows startup
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
www.yandex.ru
perekachaem.ru

How to determine Backdoor.Generic.367920?


File Info:

crc32: 4D357BD4
md5: 7d55404ca4bb94d6d4bac46ced0a8faa
name: 7D55404CA4BB94D6D4BAC46CED0A8FAA.mlw
sha1: 4839c103b4b17ab4027b557a6c5577f18f4fd456
sha256: 7483f13e46bc1ea90655cd1466804d25e773cce3d68f0ff531b435b011101b12
sha512: 5aa723a5722af56bcfa97eca376498261ee81bf5418bae1da28a7832a8edd19f1d752069d3307de5d1be45b3ebfe377aeed16db66585faf9139aa5af10b2e8d1
ssdeep: 12288:gc+DxAz6IUNco+fL2Jk7w2nWwcOeju68mgnndJuJ:de47UNco+6Jk7vWdiwKDY
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Backdoor.Generic.367920 also known as:

K7AntiVirusRiskware ( 0040eff71 )
DrWebTrojan.DownLoad1.64003
CynetMalicious (score: 100)
CAT-QuickHealRansom.Gimemo.16897
McAfeeArtemis!7D55404CA4BB
CylanceUnsafe
SangforTrojan.Win32.Agent.gen
AlibabaRansom:Win32/LockScreen.72e458be
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.ca4bb9
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.LGFLNOZ
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Trojan.Delf-32183
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderBackdoor.Generic.367920
NANO-AntivirusTrojan.Win32.Delf.odiim
MicroWorld-eScanBackdoor.Generic.367920
TencentWin32.Backdoor.Delf.Ajlt
Ad-AwareBackdoor.Generic.367920
SophosMal/Generic-S
ComodoSuspicious@#3sztn08mo2zow
BitDefenderThetaGen:NN.ZelphiCO.34690.MGW@aePt8Koc
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.jh
FireEyeBackdoor.Generic.367920
EmsisoftBackdoor.Generic.367920 (B)
SentinelOneStatic AI – Suspicious PE
JiangminBackdoor/Delf.spg
WebrootTrojan:Win32/Trufip!rts
AviraBDS/Delf.ujg
eGambitUnsafe.AI_Score_96%
Antiy-AVLTrojan/Generic.ASMalwS.19231A
MicrosoftTrojan:Win32/Tnega!ml
AegisLabTrojan.Win32.Delf.m!c
GDataBackdoor.Generic.367920
AhnLab-V3Backdoor/Win32.Delf.C816019
MAXmalware (ai score=99)
PandaGeneric Malware
RisingRansom.Weenloc!8.519 (CLOUD)
YandexTrojan.GenAsa!JcuS+7LH9/0
IkarusBackdoor.Delf
MaxSecureTrojan.Malware.5637623.susgen
FortinetW32/Delf.UJG!tr.bdr
AVGWin32:Trojan-gen

How to remove Backdoor.Generic.367920?

Backdoor.Generic.367920 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment