Backdoor

About “Backdoor.NanoCore” infection

Malware Removal

The Backdoor.NanoCore file is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

What Backdoor.NanoCore virus can do?

  • Freezing computer.
  • New home page in browsers.
  • Ads and pop-ups on desktop and browser.
  • Very slow loading speed of webpages.
  • Computer work slower then usual.

How to determine Backdoor.NanoCore?


General:

Operating System: Windows 7 / 8 / 8.1 / 10 Virus Name: TR/Kryptik.yygbe

File Info:

Name: whe.exe

Size: 531456

Type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

MD5: efef0da6aac427057ed640e5569624f2

SHA1: d8e7e2215cca45dff347ae71fa8d03b59e4cc37e

SH256: 832a3c6120a8a5f3f00ce8de17a9d81da51a986455d554344177afa71ddd27a2

Version Info:

[No Data]

Backdoor.NanoCore also known as:

ALYacSpyware.AgentTesla
APEXMalicious
AVGWin32:CrypterX-gen [Trj]
Acronissuspicious
Ad-AwareTrojan.GenericKD.42023458
AegisLabTrojan.MSIL.Agensla.i!c
AhnLab-V3Trojan/Win32.MSIL.R297531
AlibabaTrojanPSW:MSIL/Kryptik.30f38037
Antiy-AVLTrojan[PSW]/MSIL.Agensla
ArcabitTrojan.Generic.D2813A22
AvastWin32:CrypterX-gen [Trj]
AviraTR/Kryptik.yygbe
BitDefenderTrojan.GenericKD.42023458
BitDefenderThetaGen:NN.ZemsilF.32250.Gm0@a8u!F2g
CAT-QuickHealTrojanpws.Msil
ComodoMalware@#2sg3jr68jcjrf
CrowdStrikewin/malicious_confidence_90% (W)
CylanceUnsafe
CyrenW32/Trojan.SW.gen!Eldorado
DrWebTrojan.Siggen8.53479
ESET-NOD32a variant of MSIL/Kryptik.TOC
Endgamemalicious (high confidence)
F-ProtW32/Trojan.SW.gen!Eldorado
F-SecureTrojan.TR/Kryptik.yygbe
FireEyeGeneric.mg.efef0da6aac42705
FortinetMSIL/Kryptik.TPQ!tr
GDataTrojan.GenericKD.42023458
IkarusTrojan.Inject
Invinceaheuristic
JiangminTrojan.PSW.MSIL.ltd
K7AntiVirusTrojan ( 0055adfc1 )
K7GWTrojan ( 0055adfc1 )
KasperskyHEUR:Trojan-PSW.MSIL.Agensla.gen
MAXmalware (ai score=100)
MalwarebytesBackdoor.NanoCore
McAfeeRDN/Generic PWS.y
McAfee-GW-EditionBehavesLike.Win32.Generic.hc
MicroWorld-eScanTrojan.GenericKD.42023458
MicrosoftTrojan:MSIL/AgentTesla.PA!MTB
NANO-AntivirusTrojan.Win32.Agensla.gfwsio
Paloaltogeneric.ml
PandaTrj/GdSda.A
Qihoo-360Win32/Trojan.PSW.374
RisingDropper.Generic!8.35E (TFE:C:EWRKlqqx0AK)
SentinelOneDFI – Suspicious PE
SophosMal/Generic-S
SymantecTrojan Horse
Trapminemalicious.high.ml.score
TrendMicroTROJ_GEN.R002C0WK519
TrendMicro-HouseCallTROJ_GEN.R002C0WK519
VBA32TScope.Trojan.MSIL
WebrootW32.Trojan.Gen
ZillyaTrojan.Kryptik.Win32.1829499
ZoneAlarmHEUR:Trojan-PSW.MSIL.Agensla.gen

How to remove Backdoor.NanoCore?

Backdoor.NanoCore removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment