Categories: Backdoor

Backdoor.Win32.Androm.titd malicious file

The Backdoor.Win32.Androm.titd file is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

What Backdoor.Win32.Androm.titd virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Expresses interest in specific running processes
  • Repeatedly searches for a not-found process, may want to run with startbrowser=1 option
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Backdoor.Win32.Androm.titd?


General:

Operating System: Windows 7 / 8 / 8.1 / 10 Virus Name: Trojan ( 0055998e1 )

File Info:

Name: loki.exe

Size: 1109504

Type: PE32 executable (GUI) Intel 80386, for MS Windows

MD5: e1b74e825c840d5205989ef0344910bb

SHA1: 00671d335b0e4636e809315b1e92583e0ac06c69

SH256: f767831e5211083b12c553edb8e98eba8cbbe31abb8968cf5f4ac59443635fc7

Version Info:

[No Data]

Backdoor.Win32.Androm.titd also known as:

ALYac Backdoor.Androm.gen
APEX Malicious
AVG AutoIt:Injector-JE [Trj]
Ad-Aware Trojan.PasswordStealer.GenericKD.41896740
AegisLab Trojan.Win32.Androm.m!c
AhnLab-V3 Malware/Win32.Generic.R294758
Antiy-AVL GrayWare/Autoit.Execute.a
Arcabit Trojan.PasswordStealer.Generic.D27F4B24
Avast AutoIt:Injector-JE [Trj]
Avira TR/AD.LokiBot.poqsp
BitDefender Trojan.PasswordStealer.GenericKD.41896740
BitDefenderTheta Gen:NN.ZexaCO3.32250.dvW@a8jkwhii
CAT-QuickHeal Backdoor.Androm
Comodo Malware@#1hnpfjhatoc6k
CrowdStrike win/malicious_confidence_80% (W)
Cybereason malicious.35b0e4
Cylance Unsafe
Cyren W32/Arrakis.MRBT-3833
DrWeb Trojan.PWS.Stealer.21240
ESET-NOD32 a variant of Win32/Injector.Autoit.EKQ
Emsisoft Trojan.PasswordStealer.GenericKD.41896740 (B)
Endgame malicious (moderate confidence)
F-Prot W32/Autoit.AEX
F-Secure Trojan.TR/AD.LokiBot.poqsp
FireEye Generic.mg.e1b74e825c840d52
Fortinet AutoIt/Injector.EKY!tr
GData Trojan.PasswordStealer.GenericKD.41896740
Ikarus Trojan.Autoit
Invincea heuristic
K7AntiVirus Trojan ( 0055998e1 )
K7GW Trojan ( 0055998e1 )
Kaspersky Backdoor.Win32.Androm.titd
MAX malware (ai score=100)
Malwarebytes Trojan.MalPack.AutoIt
McAfee Artemis!E1B74E825C84
McAfee-GW-Edition BehavesLike.Win32.Downloader.tc
MicroWorld-eScan Trojan.PasswordStealer.GenericKD.41896740
Microsoft Trojan:Win32/Pwsteal.Q!bit
NANO-Antivirus Trojan.Win32.Androm.gdmkts
Paloalto generic.ml
Panda Trj/CI.A
Qihoo-360 HEUR/QVM10.2.8C87.Malware.Gen
Rising Trojan.Obfus/Autoit!1.BD7E (CLASSIC)
SentinelOne DFI – Malicious PE
Sophos Troj/LokiBot-EB
Symantec Packed.Generic.548
TrendMicro TrojanSpy.AutoIt.LOKI.AM
TrendMicro-HouseCall TrojanSpy.AutoIt.LOKI.AM
VIPRE Trojan.Win32.Generic!BT
ViRobot Trojan.Win32.S.Agent.1109504.T
Webroot W32.Trojan.Gen
ZoneAlarm Backdoor.Win32.Androm.titd

How to remove Backdoor.Win32.Androm.titd?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

Babar.213996 removal tips

The Babar.213996 is considered dangerous by lots of security experts. When this infection is active,…

7 mins ago

Malware.AI.2248263649 (file analysis)

The Malware.AI.2248263649 is considered dangerous by lots of security experts. When this infection is active,…

17 mins ago

About “Trojan.Dropper.Agent.AKK” infection

The Trojan.Dropper.Agent.AKK is considered dangerous by lots of security experts. When this infection is active,…

24 mins ago

Malware.AI.2972915474 malicious file

The Malware.AI.2972915474 is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

Win32/Autoit.OPN information

The Win32/Autoit.OPN is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

Malware.AI.3788326785 removal

The Malware.AI.3788326785 is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago