Backdoor

How to remove “Backdoor.Win32.Androm.tute”?

Malware Removal

The Backdoor.Win32.Androm.tute is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Win32.Androm.tute virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Backdoor.Win32.Androm.tute?


File Info:

crc32: 420AEBF8
md5: 15f541312f6a00647aa0cf53cb54d291
name: pressing.exe
sha1: 5e796249d88318af09306ace660542acebfca7a0
sha256: 6b7273efc1e7afd3838cc12e0c729104f0ba1062d3b140eadff601a1f4e1b648
sha512: aed6cb4ed075004620e3bfa61cd5a9402068439e5b0db35d98e3b8c3ac52c08153b9a9514573c198d28fd0f2495e93556ea09e65b68a1b38dea0a221c7b04c6b
ssdeep: 768:VNXAW8j6Y1/yoPy86TPY5LVeCquoQRxytCKt0Qr:VxAW8X16gkULVeCquVutCKt0o
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: Skrd3
FileVersion: 1.00
ProductName: Omkart6
ProductVersion: 1.00
FileDescription: Unimagi8
OriginalFilename: Skrd3.exe

Backdoor.Win32.Androm.tute also known as:

BkavW32.AIDetectVM.malware2
MicroWorld-eScanTrojan.GenericKD.33372296
FireEyeTrojan.GenericKD.33372296
Qihoo-360Generic/HEUR/QVM03.0.7AC5.Malware.Gen
McAfeeRDN/Generic.grp
CylanceUnsafe
VIPREWin32.Malware!Drop
SangforMalware
K7AntiVirusTrojan ( 005613f21 )
BitDefenderTrojan.GenericKD.33372296
K7GWTrojan ( 005613f21 )
F-ProtW32/Kryptik.BCV.gen!Eldorado
SymantecTrojan.Gen.2
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
ClamAVWin.Malware.Ursu-7599282-0
GDataTrojan.GenericKD.33372296
KasperskyBackdoor.Win32.Androm.tute
AlibabaBackdoor:Win32/Androm.6949059d
NANO-AntivirusTrojan.Win32.TrjGen.hbxgvy
AegisLabTrojan.Multi.Generic.4!c
RisingTrojan.Injector!8.C4 (CLOUD)
Ad-AwareTrojan.GenericKD.33372296
EmsisoftTrojan.GenericKD.33372296 (B)
F-SecureTrojan.TR/Injector.owrcf
DrWebTrojan.Siggen9.14919
TrendMicroTROJ_GEN.R067C0PBR20
McAfee-GW-EditionRDN/Generic.grp
Trapminemalicious.moderate.ml.score
SophosMal/FareitVB-W
IkarusTrojan.VB.Crypt
CyrenW32/Kryptik.BCV.gen!Eldorado
AviraTR/Injector.owrcf
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.Wacatac
Endgamemalicious (moderate confidence)
ArcabitTrojan.Generic.D1FD3888
ZoneAlarmBackdoor.Win32.Androm.tute
MicrosoftTrojan:Win32/Fareit.VB!MTB
AhnLab-V3Suspicious/Win.VBKrypt.X2058
BitDefenderThetaGen:NN.ZevbaF.34090.dm0@aiKg3Qii
ALYacSpyware.LokiBot
VBA32BScope.Backdoor.NetWiredRC
MalwarebytesTrojan.MalPack.VB.Generic
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Injector.EKSK
TrendMicro-HouseCallTrojanSpy.Win32.FAREIT.SMTHE.hp
TencentWin32.Backdoor.Androm.Eant
eGambitUnsafe.AI_Score_99%
FortinetW32/Injector.EFDQ!tr
AVGWin32:TrojanX-gen [Trj]
CrowdStrikewin/malicious_confidence_60% (W)
MaxSecureTrojan.Malware.74976965.susgen

How to remove Backdoor.Win32.Androm.tute?

Backdoor.Win32.Androm.tute removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment