Backdoor

Backdoor.Generic.756204 removal tips

Malware Removal

The Backdoor.Generic.756204 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Generic.756204 virus can do?

  • Creates RWX memory
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Reads data out of its own binary image
  • Sniffs keystrokes
  • Checks for the presence of known windows from debuggers and forensic tools
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Backdoor.Generic.756204?


File Info:

crc32: B3543657
md5: 65dce2eb90e6627cbff44142b6c4fd47
name: dhhsd4xgq.exe
sha1: b9b3476db997de6923b405e2fa740cb32eb51504
sha256: bb8a3fbf488ba180608e7514c9ec1be1c2b997de4d46275dc5ab9cec0d040688
sha512: 556f869c93ee0c5300af86bcc717864ec93bcf4375d876bb7a92418d811921a2a7987c01b2b6f953474d1689c6b689e41f5a50a75c686a92a9f04db3e7692722
ssdeep: 24576:R6K7IrtLmCC+bMCz2SvLfV612Xi4fO8m1+UNNJ:R6hV4zCz2SvLfV612Xi4fDm3NT
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
InternalName: Cheat Engine Trainer
FileVersion: 1.8.0.0
CompanyName:
CheatEngineHomepage: http://www.cheatengine.org/
LegalTrademarks:
Comments:
ProductName:
ProductVersion: 1.2
FileDescription:
OriginalFilename:
Translation: 0x0413 0x04e4

Backdoor.Generic.756204 also known as:

MicroWorld-eScanBackdoor.Generic.756204
FireEyeGeneric.mg.65dce2eb90e6627c
McAfeeArtemis!65DCE2EB90E6
CylanceUnsafe
VIPRETrojan.Win32.Delf.abt (fs)
SangforMalware
K7AntiVirusUnwanted-Program ( 004d38111 )
BitDefenderBackdoor.Generic.756204
K7GWUnwanted-Program ( 004d38111 )
Cybereasonmalicious.b90e66
F-ProtW32/Backdoor2.HJVG
TotalDefenseWin32/CheatEngine.A!genus
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Agent-240912
GDataWin32.Riskware.Hacktool.E
AlibabaHackTool:Win32/CheatEngine.e358f090
RisingTrojan.Bitrep!8.F596 (CLOUD)
Endgamemalicious (high confidence)
EmsisoftApplication.Generic (A)
ComodoMalware@#3q1ftftfkh3i9
F-SecureTrojan.TR/Agent.cada.14909
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Fareit.ch
Trapminemalicious.high.ml.score
SophosCheatEngine (PUA)
CyrenW32/Backdoor.AGXZ-3621
JiangminTrojanDropper.Agent.arim
WebrootW32.Trojan.Gen
AviraTR/Agent.cada.14909
MAXmalware (ai score=99)
MicrosoftTrojan:Win32/Wacatac.C!ml
ArcabitBackdoor.Generic.DB89EC
SUPERAntiSpywareHack.Tool/Gen-GameCheat
Acronissuspicious
VBA32TrojanDropper.Agent
ALYacBackdoor.Generic.756204
Ad-AwareBackdoor.Generic.756204
ESET-NOD32a variant of Win32/HackTool.CheatEngine.AB potentially unsafe
YandexHackTool.CheatEngine!9Drovhclxmg
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_100%
FortinetRiskware/CheatEngine
BitDefenderThetaGen:NN.ZelphiF.34098.0G3@aOHDuUbO
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Backdoor.Generic.756204?

Backdoor.Generic.756204 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment