Backdoor

How to remove “Backdoor.Win32.Emotet.cjvg”?

Malware Removal

The Backdoor.Win32.Emotet.cjvg is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Win32.Emotet.cjvg virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Mimics the system’s user agent string for its own requests
  • Expresses interest in specific running processes
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Attempts to modify proxy settings

How to determine Backdoor.Win32.Emotet.cjvg?


File Info:

crc32: 877B107D
md5: b9cc4c4850f84277894b9f70bac68196
name: B9CC4C4850F84277894B9F70BAC68196.mlw
sha1: 3ebad62c5a303b6d6266e6e6a4cbfb563eb23ede
sha256: 6ccfa3a98871747df1716a7df2233b392d5dcec7d9e837093923d5a8e16e9bd6
sha512: 70a05818086816fa4b482891b48127db5a6726666c77e6f41d018dd347cf281b259d94dd6395de3da067f1058de151522088354a054f3178e9a4cc96172330b2
ssdeep: 12288:rkEjer16eQSqXL4m1EiOS1OrX3sBqCjM7cuJcWViQjnbbyADuCgs:rk2E1kEi1asBqCM79iQjbFuO
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Backdoor.Win32.Emotet.cjvg also known as:

BkavW32.AIDetectVM.malware1
MicroWorld-eScanTrojan.GenericKDZ.72296
McAfeeEmotet-FRR!B9CC4C4850F8
SangforMalware
BitDefenderTrojan.GenericKDZ.72296
K7GWTrojan ( 005756681 )
K7AntiVirusTrojan ( 005756681 )
CyrenW32/Emotet.AZQ.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
KasperskyBackdoor.Win32.Emotet.cjvg
AlibabaTrojan:Win32/Emotet.c42fa856
AegisLabTrojan.Win32.Emotet.L!c
TencentWin32.Backdoor.Emotet.Pika
Ad-AwareTrojan.GenericKDZ.72296
SophosMal/Generic-R + Troj/Emotet-CUP
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
EmsisoftTrojan.Emotet (A)
SentinelOneStatic AI – Suspicious PE
WebrootW32.Trojan.Gen
MicrosoftTrojan:Win32/EmotetCrypt.VAM!MTB
GridinsoftTrojan.Win32.Packed.oa
ZoneAlarmBackdoor.Win32.Emotet.cjvg
GDataTrojan.GenericKDZ.72296
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C4283335
ALYacTrojan.GenericKDZ.72296
TACHYONBackdoor/W32.Emotet.442368
VBA32Trojan.Emotet
MalwarebytesTrojan.MalPack.TRE
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.HILS
MAXmalware (ai score=85)
FortinetW32/Kryptik.5F2A!tr
AVGWin32:BankerX-gen [Trj]
AvastWin32:BankerX-gen [Trj]
Qihoo-360Win32/Backdoor.e17

How to remove Backdoor.Win32.Emotet.cjvg?

Backdoor.Win32.Emotet.cjvg removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment