Backdoor

Should I remove “Backdoor.Shell”?

Malware Removal

The Backdoor.Shell is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Shell virus can do?

  • Anomalous binary characteristics

How to determine Backdoor.Shell?


File Info:

crc32: 022C5EBB
md5: cdff90668a2f2c0a0e6603c86c6c520d
name: innocent.exe
sha1: 2bc76270e970dc23d762e4bb7777e7627a67191d
sha256: 33865b9f2bccb7922986f44cdee3dbfbc26965828ca6058c1edd083eefec9a87
sha512: 26f22727b309c90f398649ee315f3bdf0825e213d357fd11aff3618a2c26710337315609eca8ad87dda7cfd54fd864da77eb9e7022a05d410e69a489c856c02d
ssdeep: 3072:5yA1o8E7GrAZ4husjiqXS96wdq7tTtyV/AgjaUVu7UPlZXJsUtc+Uhi:5yGoOAvsFSzdSTMV/AuvVuIe
type: PE32+ executable (GUI) x86-64, for MS Windows

Version Info:

0: [No Data]

Backdoor.Shell also known as:

MicroWorld-eScanTrojan.Metasploit.A
CAT-QuickHealHackTool.Metasploit.S9212471
McAfeeTrojan-FPJE!CDFF90668A2F
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderTrojan.Metasploit.A
K7GWTrojan ( 004fae881 )
K7AntiVirusTrojan ( 004fae881 )
ArcabitTrojan.Metasploit.A
TrendMicroTROJ64_SWRORT.SM1
SymantecMeterpreter
ESET-NOD32a variant of Win64/Rozena.AD
APEXMalicious
AvastWin64:HacktoolX-gen [Trj]
ClamAVWin.Tool.MeterPreter-6294292-0
KasperskyHEUR:Trojan.Win32.Generic
AlibabaHackTool:Win32/Meterpreter.e2797ea1
ViRobotTrojan.Win32.S.Agent.212992.BBK
RisingTrojan.Kryptik!1.A2F4 (CLASSIC)
Endgamemalicious (high confidence)
EmsisoftTrojan.Metasploit.A (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen7
DrWebBackDoor.Shell.244
ZillyaTrojan.Rozena.Win64.2225
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win64.Trojan.dm
FortinetW64/Rozena.J!tr
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.cdff90668a2f2c0a
SophosMal/Swrort-J
SentinelOneDFI – Malicious PE
CyrenW64/Trojan.ARGR-5604
JiangminTrojan.Generic.dyhrq
WebrootW32.Trojan.Metasploit
AviraTR/Crypt.XPACK.Gen7
MAXmalware (ai score=100)
Antiy-AVLHackTool/Win64.Meterpreter
MicrosoftHackTool:Win64/Meterpreter.A!dll
ZoneAlarmHEUR:Trojan.Win32.Generic
Acronissuspicious
VBA32Backdoor.Shell
ALYacTrojan.Metasploit.A
Ad-AwareTrojan.Metasploit.A
MalwarebytesTrojan.MalPack
PandaTrj/CI.A
TrendMicro-HouseCallTROJ64_SWRORT.SM1
IkarusTrojan.Win64.Rozena
eGambitTrojan.Generic
GDataWin64.Trojan.Rozena.A
AVGWin64:HacktoolX-gen [Trj]
Cybereasonmalicious.68a2f2
Paloaltogeneric.ml
Qihoo-360Generic/HEUR/QVM202.0.3707.Malware.Gen

How to remove Backdoor.Shell?

Backdoor.Shell removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment