Backdoor

Backdoor.Win32.Androm.tkqj removal guide

Malware Removal

The Backdoor.Win32.Androm.tkqj file is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

What Backdoor.Win32.Androm.tkqj virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Deletes its original binary from disk
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Steals private information from local Internet browsers
  • Creates a hidden or system file
  • Creates a copy of itself
  • Harvests credentials from local FTP client softwares
  • Harvests information related to installed instant messenger clients
  • Harvests information related to installed mail clients
  • Collects information to fingerprint the system

How to determine Backdoor.Win32.Androm.tkqj?


General:

Operating System: Windows 7 / 8 / 8.1 / 10 Virus Name: Malware@#t55d2yozc5nq

File Info:

Name: lky.exe

Size: 226390

Type: PE32 executable (GUI) Intel 80386, for MS Windows

MD5: 51a3af0843364aeda930476ebaf3102f

SHA1: 439dcaf280b2384060ed9237dce68fabdce39031

SH256: 4acc26b5f79c556cbb1a396ea8666739e8992399739e6179e216cf52b81a5821

Version Info:

[No Data]

Backdoor.Win32.Androm.tkqj also known as:

ALYacSpyware.LokiBot
APEXMalicious
AVGWin32:Trojan-gen
Acronissuspicious
Ad-AwareTrojan.GenericKD.32648454
AegisLabTrojan.Win32.Androm.m!c
AhnLab-V3Malware/Win32.Generic.C3534682
AlibabaBackdoor:Win32/Androm.eb287adc
Antiy-AVLTrojan[Backdoor]/Win32.Androm
ArcabitTrojan.Generic.D1F22D06
AviraHEUR/AGEN.1039972
BitDefenderTrojan.GenericKD.32648454
BitDefenderThetaGen:NN.ZexaF.32245.ny3@aKbRpSli
CAT-QuickHealBackdoor.Androm
ComodoMalware@#t55d2yozc5nq
CrowdStrikewin/malicious_confidence_80% (W)
Cybereasonmalicious.280b23
CylanceUnsafe
CyrenW32/Trojan.AEYL-6519
DrWebTrojan.PWS.Stealer.25838
ESET-NOD32a variant of Win32/GenKryptik.DWIQ
EmsisoftTrojan.GenericKD.32648454 (B)
Endgamemalicious (high confidence)
F-SecureHeuristic.HEUR/AGEN.1039972
FireEyeGeneric.mg.51a3af0843364aed
FortinetW32/Kryptik.GWYH!tr
GDataTrojan.GenericKD.32648454
IkarusTrojan.Win32.Krypt
Invinceaheuristic
JiangminTrojan.PSW.Azorult.epd
K7AntiVirusTrojan ( 0055a6c31 )
K7GWTrojan ( 0055a6c31 )
KasperskyBackdoor.Win32.Androm.tkqj
MAXmalware (ai score=83)
MalwarebytesSpyware.PasswordStealer.XMP.Generic
McAfeeRDN/Generic BackDoor
McAfee-GW-EditionBehavesLike.Win32.Expiro.dc
MicroWorld-eScanTrojan.GenericKD.32648454
MicrosoftTrojan:Win32/Azorult.PC!MTB
NANO-AntivirusTrojan.Win32.Azorult.getfyz
Paloaltogeneric.ml
PandaTrj/CI.A
Qihoo-360Win32/Backdoor.0f6
RisingTrojan.Kryptik!1.BE72 (CLASSIC)
SentinelOneDFI – Malicious PE
SophosMal/Generic-S
SymantecTrojan.Gen.MBT
Trapminesuspicious.low.ml.score
TrendMicro-HouseCallTROJ_GEN.R015C0WJR19
VBA32Backdoor.Androm
VIPRETrojan.Win32.Generic!BT
ViRobotTrojan.Win32.Z.Agent.226390
WebrootW32.Trojan.Gen
YandexBackdoor.Androm!YbuuBkppCIY
ZoneAlarmBackdoor.Win32.Androm.tkqj

How to remove Backdoor.Win32.Androm.tkqj?

Backdoor.Win32.Androm.tkqj removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment