Backdoor

What is “Backdoor.Generic.484019”?

Malware Removal

The Backdoor.Generic.484019 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Generic.484019 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Backdoor.Generic.484019?


File Info:

name: D664295E0760CFC99332.mlw
path: /opt/CAPEv2/storage/binaries/94ccbafb8cebaffb3a3e79c31e0b16dcef16f9caae6dad02b093ee84fc16f49b
crc32: 85A5C77C
md5: d664295e0760cfc993320b34a1c9a0e7
sha1: 14a57de65343990a557963c4ed69fd1243c729f5
sha256: 94ccbafb8cebaffb3a3e79c31e0b16dcef16f9caae6dad02b093ee84fc16f49b
sha512: 52a4ad444978ff902da3ae4391bb37c3715aeb67e2bb7fa4fb16fdde7f62af3344211d00ccbde8bdbb05a012579c5a476d0ba74a008572fd49efdb09b2cc1504
ssdeep: 12288:1PVV/jr///zyXGyBcw/aNPRWPXA1mrahYJfuy:tjD3zyXJBceOJW0mrhf
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C8C48D07B7D61A55D2AD23312AE7C7D266B3BC085F1B864E6224737E2C71E209D36B07
sha3_384: 99222cb41a087414ffc2533397488a6c06f32005a5251c29e7e8169c45ccbf9851922facbab11f7a03812f4f16d5a6b8
ep_bytes: 68601c4000e8eeffffff000048000000
timestamp: 2010-10-02 01:07:07

Version Info:

0: [No Data]

Backdoor.Generic.484019 also known as:

BkavW32.AIDetectMalware
LionicWorm.Win32.Shakblades.lyuQ
tehtrisGeneric.Malware
CynetMalicious (score: 100)
FireEyeGeneric.mg.d664295e0760cfc9
CAT-QuickHealWorm.Ainslot.AA3
McAfeeGenericRXAA-AA!D664295E0760
MalwarebytesGeneric.Malware.AI.DDS
SangforVirus.Win32.Save.a
K7AntiVirusP2PWorm ( 0017e2081 )
AlibabaWorm:Win32/Cosmu.6ce97f4b
K7GWP2PWorm ( 0017e2081 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZevbaF.36318.JmW@a0ftkKfG
VirITTrojan.Win32.VB_Heur
CyrenW32/Hupigon.D.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/VB.NXB
APEXMalicious
ClamAVWin.Trojan.Cosmu-7105755-1
KasperskyTrojan.Win32.Cosmu.aett
BitDefenderBackdoor.Generic.484019
NANO-AntivirusTrojan.Win32.Cosmu.dyaxlr
MicroWorld-eScanBackdoor.Generic.484019
AvastWin32:Cambot-AN [Wrm]
TencentMalware.Win32.Gencirc.115a1c19
TACHYONTrojan/W32.VB-Cosmu.573440
EmsisoftBackdoor.Generic.484019 (B)
BaiduWin32.Worm.Agent.y
F-SecureBackdoor.BDS/Backdoor.Gen
DrWebBackDoor.BotSiggen.48
VIPREBackdoor.Generic.484019
TrendMicroWORM_SWISYN.SM
McAfee-GW-EditionBehavesLike.Win32.VBObfus.hh
Trapminemalicious.high.ml.score
SophosMal/VB-GI
IkarusTrojan-PWS.Win32.VB
GDataBackdoor.Generic.484019
JiangminTrojan/Cosmu.gjh
WebrootW32.Worm.Gen
AviraBDS/Backdoor.Gen
Antiy-AVLTrojan/Win32.Cosmu
XcitiumWorm.Win32.VB.~nrc@4jiiup
ArcabitBackdoor.Generic.D762B3
ViRobotTrojan.Win.Z.Cosmu.573440.AH
ZoneAlarmTrojan.Win32.Cosmu.aett
MicrosoftTrojan:Win32/Vindor!pz
GoogleDetected
AhnLab-V3Trojan/Win32.Cosmu.R21539
VBA32Trojan.VBRA.013894
ALYacBackdoor.Generic.484019
MAXmalware (ai score=88)
Cylanceunsafe
PandaTrj/Banker.MJW
TrendMicro-HouseCallWORM_SWISYN.SM
RisingBackdoor.VB!1.651D (CLASSIC)
YandexTrojan.GenAsa!azlqnN4I9f0
SentinelOneStatic AI – Malicious PE
FortinetW32/Cospet.HA!tr
AVGWin32:Cambot-AN [Wrm]
Cybereasonmalicious.e0760c
DeepInstinctMALICIOUS

How to remove Backdoor.Generic.484019?

Backdoor.Generic.484019 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment