Backdoor

About “Backdoor.Win32.Androm.tsll” infection

Malware Removal

The Backdoor.Win32.Androm.tsll is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Win32.Androm.tsll virus can do?

  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Backdoor.Win32.Androm.tsll?


File Info:

crc32: D1F79918
md5: 890835a3a7d871b9c521924508b2f1fe
name: test.exe
sha1: 01355597a1c1ba508f3f283fb19fbfcbe69d780f
sha256: c8c9a189ff039baa3d319664c4e00ba59953b81b0dc35be3e72e0964c2eed41c
sha512: d39deefcda0ba7a5eb3cf081fbf4e27a622ceb8537b4a89c7809485db1436c54c235263f94d4d285e93b90c166d1f307cacea5a59e870a627b5a2f0c1bb00a31
ssdeep: 3072:+wdK6g8IT9xD5Uw5MIXZZ0i+e3aC8/EXesBrYLwRPV2xRGn/wv2ljTavq9u:fK6g8ITJ3vVq98XHYcexk4HP
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Backdoor.Win32.Androm.tsll also known as:

MicroWorld-eScanTrojan.GenericKD.33013749
CAT-QuickHealBackdoor.Androm
McAfeeRDN/Generic BackDoor
SangforMalware
K7AntiVirusTrojan ( 0055e57b1 )
BitDefenderTrojan.GenericKD.33013749
K7GWTrojan ( 0055e57b1 )
Cybereasonmalicious.7a1c1b
ArcabitTrojan.Generic.D1F7BFF5
Invinceaheuristic
CyrenW32/Trojan.CQNG-4800
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.UGA
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
KasperskyBackdoor.Win32.Androm.tsll
AlibabaBackdoor:Win32/Kryptik.8bd32966
RisingTrojan.Kryptik!8.8 (CLOUD)
Endgamemalicious (high confidence)
EmsisoftTrojan.GenericKD.33013749 (B)
DrWebTrojan.Siggen9.7427
McAfee-GW-EditionBehavesLike.Win32.Trojan.cc
FortinetMSIL/Kryptik.UGA!tr
FireEyeTrojan.GenericKD.33013749
SophosMal/Generic-S
SentinelOneDFI – Malicious PE
WebrootW32.Malware.Gen
MAXmalware (ai score=89)
MicrosoftTrojan:Win32/Wacatac.C!ml
ZoneAlarmBackdoor.Win32.Androm.tsll
AhnLab-V3Backdoor/Win32.NanoBot.R188687
ALYacTrojan.GenericKD.33013749
Ad-AwareTrojan.GenericKD.33013749
PandaTrj/CI.A
TencentWin32.Backdoor.Androm.Dyzw
IkarusTrojan.MSIL.Crypt
GDataTrojan.GenericKD.33013749
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Win32/Backdoor.7dc

How to remove Backdoor.Win32.Androm.tsll?

Backdoor.Win32.Androm.tsll removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment