Backdoor

Backdoor.Generic.614742 removal

Malware Removal

The Backdoor.Generic.614742 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Generic.614742 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Backdoor.Generic.614742?


File Info:

name: C67E1F48A4EA75E6708E.mlw
path: /opt/CAPEv2/storage/binaries/001517cb96d38370d414f8f856cbb731b2098335ea34cdbb553a5c9e6a15dfbe
crc32: 27B8E7E0
md5: c67e1f48a4ea75e6708e58a65a38531c
sha1: c90a098009b33882ad6fc0200e0d4e1e9f0a715f
sha256: 001517cb96d38370d414f8f856cbb731b2098335ea34cdbb553a5c9e6a15dfbe
sha512: 487c1629b55a0611be3ce218e619096ce7601f7acbde4402f13235b350086de8e95a2efd07f2d1b616e68c20eff0db9f0914331950af1f3edcc3f4855a395ba1
ssdeep: 3072:7T2Hu+V+3YaTJoCqqQYkIFSQZ5Sy/tF7w1daebWi4o8RBTbWse:7iNQ3Y4JmYkIF5FQwe9ETby
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T134049E2776E1C0B3C26341318EE2EBBDF6F9F5140F328A5377984B1D2E39945462B266
sha3_384: 28c80e4908486a5ee51f983d7c5571dfd8d765f65078a1407972df595d7303cc9fe5d1537741136b56ab47404ba7f2f1
ep_bytes: 558bec6aff68d82642006888df400064
timestamp: 2009-03-23 05:54:03

Version Info:

CompanyName:
FileDescription: WriteTime Microsoft 基础类应用程序
FileVersion: 1, 0, 0, 1
InternalName: WriteTime
LegalCopyright: 版权所有 (C) 2009
LegalTrademarks:
OriginalFilename: WriteTime.EXE
ProductName: WriteTime 应用程序
ProductVersion: 1, 0, 0, 1
Translation: 0x0804 0x04b0

Backdoor.Generic.614742 also known as:

LionicTrojan.Win32.Qqpass.4!c
MicroWorld-eScanBackdoor.Generic.614742
FireEyeBackdoor.Generic.614742
ALYacBackdoor.Generic.614742
CylanceUnsafe
ZillyaTrojan.QQPass.Win32.9808
SangforTrojan.Win32.Agent.Vff7
BitDefenderBackdoor.Generic.614742
Cybereasonmalicious.8a4ea7
ArcabitBackdoor.Generic.D96156
VirITTrojan.Win32.Qqpass.IVE
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R002H0CFR22
Paloaltogeneric.ml
ClamAVWin.Trojan.Qqpass-419
NANO-AntivirusTrojan.Win32.QQPass.cpprc
ViRobotTrojan.Win32.Z.Qqpass.188416.E
RisingTrojan.Win32.Generic.153880D2 (C64:YzY0OlglRh1oJKXoR6gg5ICGf4k)
Ad-AwareBackdoor.Generic.614742
ComodoMalware@#368kn1ozt5a37
VIPREBackdoor.Generic.614742
McAfee-GW-EditionArtemis!Trojan
EmsisoftBackdoor.Generic.614742 (B)
APEXMalicious
JiangminTrojan/PSW.QQPass.jng
WebrootW32.Trojan.Gen
KingsoftWin32.Hack.Generic.v.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
SUPERAntiSpywareTrojan.Agent/Gen-QQPass
GDataBackdoor.Generic.614742
McAfeeArtemis!C67E1F48A4EA
TACHYONTrojan-PWS/W32.QQPass.188416.E
VBA32TrojanPSW.QQpass
PandaTrj/CI.A
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/QQPass.YJA!tr.pws

How to remove Backdoor.Generic.614742?

Backdoor.Generic.614742 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment