Backdoor

Backdoor.RAT.xpert removal tips

Malware Removal

The Backdoor.RAT.xpert is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.RAT.xpert virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Backdoor.RAT.xpert?


File Info:

crc32: 017B38F3
md5: a15915a25a5ec67af6e2e422acedaa68
name: A15915A25A5EC67AF6E2E422ACEDAA68.mlw
sha1: c48ccd1326ab3a1d15dec32b1617c2e65ee9d194
sha256: d72da2af39e90713d465aff2de9c4991a2fe6125e06b67cd85cd67915a2c966e
sha512: 87bb58dfed4271fc985e2c4987478230b4ed588986749798ffe333ea885bca41f3aa8cf98a0b23bf6e53eaa7cce803e9b717ed5530c8dd5751ae0853005e3fdb
ssdeep: 24576:RsKhdK/edyoyjMEF9hXH5sCjYVQBG0qy:wedyoyjMEzteYCFy
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: 2004 Ford Fusion
Assembly Version: 1.0.0.0
InternalName: CalendarData.exe
FileVersion: 1.0.0.0
CompanyName: Ford
LegalTrademarks:
Comments:
ProductName: BaseChannel
ProductVersion: 1.0.0.0
FileDescription: BaseChannel
OriginalFilename: CalendarData.exe

Backdoor.RAT.xpert also known as:

DrWebTrojan.Siggen14.17803
ALYacBackdoor.RAT.xpert
CylanceUnsafe
SangforSpyware.MSIL.Stealer.gen
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Kryptik.ali2000016
K7GWTrojan ( 00517e741 )
CyrenW32/MSIL_Kryptik.UZ.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32Win32/XRat.AC
APEXMalicious
AvastWin32:RATX-gen [Trj]
KasperskyHEUR:Trojan.MSIL.Crypt.gen
BitDefenderTrojan.GenericKD.37163395
MicroWorld-eScanTrojan.GenericKD.37163395
Ad-AwareTrojan.GenericKD.37163395
ComodoMalware@#1xzdnl6n2f6t8
FireEyeTrojan.GenericKD.37163395
EmsisoftTrojan.GenericKD.37163395 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_62%
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:MSIL/Tnega.BK!MTB
AegisLabTrojan.Win32.Generic.m7QV
ZoneAlarmHEUR:Trojan.MSIL.Crypt.gen
GDataTrojan.GenericKD.37163395
AhnLab-V3Trojan/Win.MSILKrypt.R428594
McAfeeAgentTesla-FDAH!A15915A25A5E
MAXmalware (ai score=87)
TrendMicro-HouseCallTROJ_GEN.F0D1C00FU21
IkarusTrojan-Spy.FormBook
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Kryptik.ABSN!tr
AVGWin32:RATX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Backdoor.Rat.HgIASXgA

How to remove Backdoor.RAT.xpert?

Backdoor.RAT.xpert removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment