Backdoor

What is “Backdoor.Win32.Emotet.bomu”?

Malware Removal

The Backdoor.Win32.Emotet.bomu is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Win32.Emotet.bomu virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Backdoor.Win32.Emotet.bomu?


File Info:

crc32: CE428977
md5: 9126c36cf431f93e601725ce7c5b7f90
name: upload_file
sha1: 52c6dfd92a83584d458f5e02b238720d52480e2a
sha256: 79fe60b6b80ff28243f92c140c84d2dfbdfa71a9d85ee7927a8d2319aa349edb
sha512: 36e557d006f9c694a2926053b2d16adc2e30491b4149e6a08f3d1f3f997f273acb8d5b00d26d9f0f6e23c0f48a269f6cf27bd3d51f386b7ca8947f86cd82309e
ssdeep: 6144:2B9yixK0dkI6ukU1EqlhVLLiLLwLL5ZbgiUP/DRNQg3uxS/D:8rxRdbDHTC3P/NNRuxS
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Backdoor.Win32.Emotet.bomu also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.69382
FireEyeGeneric.mg.9126c36cf431f93e
CAT-QuickHealTrojan.CKGENERIC
McAfeeEmotet-FRI!9126C36CF431
MalwarebytesTrojan.Emotet
VIPRETrojan.Win32.Generic!BT
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKDZ.69382
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.92a835
TrendMicroTROJ_GEN.R011C0DHC20
BitDefenderThetaGen:NN.ZexaF.34152.uqW@aKXKzani
CyrenW32/Kryptik.BTG.gen!Eldorado
SymantecTrojan.Emotet
APEXMalicious
AvastWin32:Trojan-gen
KasperskyBackdoor.Win32.Emotet.bomu
AlibabaTrojan:Win32/Emotet.0434d4ec
ViRobotTrojan.Win32.Emotet.335872.D
Ad-AwareTrojan.GenericKDZ.69382
SophosTroj/Emotet-CKV
F-SecureTrojan.TR/Crypt.Agent.wvakh
DrWebTrojan.Emotet.999
Invinceaheuristic
EmsisoftTrojan.Emotet (A)
F-ProtW32/Kryptik.BTG.gen!Eldorado
JiangminBackdoor.Emotet.qh
AviraTR/Crypt.Agent.wvakh
FortinetW32/Emotet.997!tr
ArcabitTrojan.Generic.D10F06
ZoneAlarmBackdoor.Win32.Emotet.bomu
MicrosoftTrojan:Win32/Emotet.PEK!MTB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Emotet.C4179735
VBA32BScope.Trojan.Emotet
MAXmalware (ai score=80)
PandaTrj/Emotet.C
ESET-NOD32a variant of Win32/Kryptik.HFMB
TrendMicro-HouseCallTROJ_GEN.R011C0DHC20
RisingTrojan.Emotet!8.B95 (CLOUD)
SentinelOneDFI – Suspicious PE
GDataWin32.Trojan-Spy.Emotet.BZ0FNC
AVGWin32:Trojan-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Generic/Trojan.c56

How to remove Backdoor.Win32.Emotet.bomu?

Backdoor.Win32.Emotet.bomu removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment