Backdoor

Backdoor.Rat removal

Malware Removal

The Backdoor.Rat is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Rat virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Backdoor.Rat?


File Info:

crc32: 80FC20EE
md5: a67f4fad7dd342600c8ff5e5ede970bb
name: A67F4FAD7DD342600C8FF5E5EDE970BB.mlw
sha1: e5fb210fab9cceb1a3c674de2aaefbd951ba4e92
sha256: a88998b7b275d866ea3aec24b45488299384a2d8e0f2db60447f26bd550856ce
sha512: e4a1ed94853a58341518536c5c3d3fbb94b2061f2f7150a95c146e01fd8c1bac798a4f2c81e51f9554c8399872a63d14174b895c6ecb1d5ebe796f136c529ad4
ssdeep: 49152:KEWzRJhI9v5cQ52BEcZ17xatMGOG9pg4AFOkkO6xVzM:KprhInT52BRZ1xatWG9pg4AEkkO6xVzM
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 1997-2021 Simon Tatham.
InternalName: PuTTY
FileVersion: Release 0.75 (with embedded help)
CompanyName: Simon Tatham
ProductName: PuTTY suite
ProductVersion: Release 0.75
FileDescription: SSH, Telnet, Rlogin, and SUPDUP client
OriginalFilename: PuTTY
Translation: 0x0809 0x04b0

Backdoor.Rat also known as:

K7AntiVirusTrojan ( 0057c5941 )
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.3162045
CrowdStrikewin/malicious_confidence_60% (W)
K7GWTrojan ( 0057c5941 )
ESET-NOD32a variant of Win32/Kryptik.HKVI
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Agent.gen
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34692.aw2@aWhYgngO
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.BadFile.vh
FireEyeGeneric.mg.a67f4fad7dd34260
AviraTR/Crypt.Agent.tjdjf
MicrosoftTrojan:Win32/Glupteba!ml
GridinsoftTrojan.Win32.Gen.oa!s1
ZoneAlarmHEUR:Trojan.Win32.Agent.gen
GDataWin32.Trojan.Agent.7Y2OVP
AhnLab-V3Trojan/Win.Agent.C4496613
McAfeeArtemis!A67F4FAD7DD3
VBA32Backdoor.Rat
MalwarebytesBackdoor.ParallaxRat
TrendMicro-HouseCallTROJ_GEN.R067H0CEU21
IkarusBackdoor.Rat.Parallax
FortinetW32/Agent.HKVI!tr
AVGWin32:Malware-gen

How to remove Backdoor.Rat?

Backdoor.Rat removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment