Backdoor

How to remove “Backdoor.Win32.Androm.twet”?

Malware Removal

The Backdoor.Win32.Androm.twet is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Win32.Androm.twet virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Backdoor.Win32.Androm.twet?


File Info:

crc32: D551177D
md5: fdd81b24b8e2399924fe7a912abd40cb
name: pressing.exe
sha1: 4340196645dbfb22f1a100a15d936cfdcf98512e
sha256: 46ea446ca792a75a1631c71ccc52ca3cb758762bb9a389ef838925c753db0a96
sha512: 70eb6caf0606c47156eaadbf435a51d1e10fc2940bbbf6fb363baed353e6f24a6e5afe3566bad14067ff803045a98b1d37464e8b09d5d90f1df4795a18f1b9c0
ssdeep: 768:ysgjC0C2g70V0p0BMBmWGpbe+nVxT03jnxbQ:Jg+04c0p0B2mWgbe+nVxT0T+
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: shrubko
InternalName: Colle
FileVersion: 1.00
CompanyName: prolongati
LegalTrademarks: Unillumina
Comments: navig
ProductName: pteroda
ProductVersion: 1.00
FileDescription: Finerpla
OriginalFilename: Colle.exe

Backdoor.Win32.Androm.twet also known as:

MicroWorld-eScanTrojan.GenericKD.33527111
ALYacTrojan.GenericKD.33527111
CylanceUnsafe
K7AntiVirusTrojan ( 005620cf1 )
BitDefenderTrojan.GenericKD.33527111
K7GWTrojan ( 005620cf1 )
CrowdStrikewin/malicious_confidence_60% (W)
TrendMicroTrojan.Win32.WACATAC.THCAABO
BitDefenderThetaGen:NN.ZevbaF.34100.em0@aCFhbani
F-ProtW32/Injector.ZY.gen!Eldorado
SymantecInfostealer
TrendMicro-HouseCallTrojan.Win32.WACATAC.THCAABO
ClamAVWin.Dropper.Fareit-7615257-0
GDataTrojan.GenericKD.33527111
KasperskyBackdoor.Win32.Androm.twet
AlibabaTrojan:Win32/VBInject.251589f1
NANO-AntivirusTrojan.Win32.TrjGen.hetccf
ViRobotTrojan.Win32.Z.Injector.65536.AIB
APEXMalicious
RisingTrojan.Injector!8.C4 (CLOUD)
Ad-AwareTrojan.GenericKD.33527111
EmsisoftTrojan.GenericKD.33527111 (B)
F-SecureTrojan.TR/Injector.lxaqt
DrWebTrojan.Siggen9.18666
McAfee-GW-EditionFareit-FRP!FDD81B24B8E2
Trapminemalicious.moderate.ml.score
SophosMal/FareitVB-W
CyrenW32/Injector.ZY.gen!Eldorado
MaxSecureTrojan.Malware.1728101.susgen
AviraTR/Injector.lxaqt
MAXmalware (ai score=99)
Antiy-AVLTrojan[Backdoor]/Win32.Androm
ArcabitTrojan.Generic.D1FF9547
AegisLabTrojan.Multi.Generic.4!c
ZoneAlarmBackdoor.Win32.Androm.twet
MicrosoftTrojan:Win32/VBInject.BS!MTB
McAfeeFareit-FRP!FDD81B24B8E2
VBA32TScope.Trojan.VB
MalwarebytesTrojan.MalPack.VB
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Injector.EKYI
TencentWin32.Backdoor.Androm.Eibo
IkarusTrojan.VB.Crypt
eGambitUnsafe.AI_Score_99%
FortinetW32/Injector.ELAK!tr
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen
Qihoo-360Generic/Trojan.d58

How to remove Backdoor.Win32.Androm.twet?

Backdoor.Win32.Androm.twet removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment