Backdoor

Backdoor.Win32.Androm.trdb removal guide

Malware Removal

The Backdoor.Win32.Androm.trdb is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Win32.Androm.trdb virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Backdoor.Win32.Androm.trdb?


File Info:

crc32: 9913425C
md5: 37ed06997dfcdaa957be0174e46d7478
name: meloki.exe
sha1: 2cee6e8b26eb7c07f9f6bebfca8bae4d92bcc7f8
sha256: c15f615067216547236eb35a4a363efbaf720f1a61119cb53d4a4a91f8b651ef
sha512: 71509c7fb9fd5603292c9391f28365fbb19ce431cc5d5fb69a79a0d3f7e8125ed8bd4735c9245891d84ad68fde07cf099bc31255c8bac33d935ca93494b3f13b
ssdeep: 24576:x2rT5JibBsR1YAcUSWcPsPQcVnJtCagDJaiVqnkiapvRvpGK3PispFpbo:ApJ22R1rcUWPsPFVrCagD4nytpGG6sW
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

Backdoor.Win32.Androm.trdb also known as:

MicroWorld-eScanTrojan.GenericKD.32943504
FireEyeGeneric.mg.37ed06997dfcdaa9
McAfeeArtemis!37ED06997DFC
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Multi.Generic.4!c
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.32943504
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.b26eb7
SymantecTrojan.Gen.MBT
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Malware.Autoit-7533156-0
GDataTrojan.GenericKD.32943504
KasperskyBackdoor.Win32.Androm.trdb
AlibabaBackdoor:Win32/Androm.23205367
RisingTrojan.Obfus/Autoit!1.C075 (CLASSIC)
Endgamemalicious (high confidence)
EmsisoftTrojan.GenericKD.32943504 (B)
ComodoMalware@#3u0is5mylwvmy
F-SecureTrojan.TR/AD.LokiBot.oagma
DrWebTrojan.PWS.Siggen2.41581
ZillyaTrojan.GenericTKA.Win32.190
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Downloader.tc
Trapminemalicious.moderate.ml.score
SophosMal/Generic-S
IkarusTrojan-Spy.Keylogger.AgentTesla
JiangminTrojan.Pasta.ahk
WebrootW32.Malware.Gen
AviraTR/AD.LokiBot.oagma
MAXmalware (ai score=82)
Antiy-AVLTrojan/Win32.Pasta
MicrosoftTrojan:Win32/Wacatac.C!ml
ArcabitTrojan.Generic.D1F6AD90
ZoneAlarmBackdoor.Win32.Androm.trdb
VBA32Trojan.SelfDel
ALYacSpyware.AgentTesla
Ad-AwareTrojan.GenericKD.32943504
MalwarebytesTrojan.MalPack.AutoIt.Generic
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Injector.Autoit.EWB
TrendMicro-HouseCallTROJ_GEN.R020H06AD20
TencentWin32.Backdoor.Androm.Lmvd
eGambitUnsafe.AI_Score_81%
FortinetAutoIt/Injector.ESJ!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Win32/Backdoor.4d5

How to remove Backdoor.Win32.Androm.trdb?

Backdoor.Win32.Androm.trdb removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment