Backdoor

Backdoor.Win32.Androm.ttbd removal tips

Malware Removal

The Backdoor.Win32.Androm.ttbd is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Win32.Androm.ttbd virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Backdoor.Win32.Androm.ttbd?


File Info:

crc32: 351FFE0A
md5: 540a063b60425b3aeef06d7875c0d3b1
name: vbc.exe
sha1: b234c2444660dfcf8421ef2e3f6a29de28564038
sha256: 2026f257fe24b522a9768867c9d4ef832a3a3f5123fdfee64990f86c9e88e862
sha512: 342f7ad97507920dec3fe383a6b269c4071ebaf79f80711dd176476edf1b80a0c4130370760cf25e1f3bfe1b4c1d5d5da66423a0aff7470716792cd87e777943
ssdeep: 12288:ccSiKQmlbARF8dVONZGGgnAWYgYRQm/5o0uOy+dforUmRXfsOm5PlyBb4/BTGe:ccSiBmlbARF8Gd8oQO5o0uO3cXUd5PlX
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9. 1999 - 2014 Learnpulse
FileVersion: 6.5.7.942
CompanyName: Learnpulse
FileDescription: Alleviate Cheng
ProductName: Compilations
ProductVersion: 6.5.7.942
PrivateBuild: 6.5.7.942
OriginalFilename: Compilations.exe
Translation: 0x0409 0x04b0

Backdoor.Win32.Androm.ttbd also known as:

McAfeeArtemis!540A063B6042
CylanceUnsafe
AegisLabTrojan.Multi.Generic.4!c
Cybereasonmalicious.44660d
Invinceaheuristic
APEXMalicious
KasperskyBackdoor.Win32.Androm.ttbd
McAfee-GW-EditionBehavesLike.Win32.Dropper.jh
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.540a063b60425b3a
IkarusTrojan-Spy.Remcos
AviraTR/AD.LokiBot.pqfaw
Endgamemalicious (high confidence)
MicrosoftTrojan:Win32/Wacatac.C!ml
ZoneAlarmBackdoor.Win32.Androm.ttbd
Acronissuspicious
GDataWin32.Trojan-Stealer.LokiBot.8YR3OZ
BitDefenderThetaGen:NN.ZexaF.34084.Qq0@aWxLKdpi
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Backdoor.Win32.Androm.ttbd?

Backdoor.Win32.Androm.ttbd removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment