Backdoor

Backdoor.Win32.Emotet.gnp information

Malware Removal

The Backdoor.Win32.Emotet.gnp is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Win32.Emotet.gnp virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Backdoor.Win32.Emotet.gnp?


File Info:

crc32: 81CE82E7
md5: f68e8e695d451dea175408159805afdf
name: c90e0d1e447d4e62041ce003c1f0fc532c39f10ff9a8dfe906618dc4c189ad67
sha1: 87c3287707d86f0c172fd68923ce16d805db6faa
sha256: c90e0d1e447d4e62041ce003c1f0fc532c39f10ff9a8dfe906618dc4c189ad67
sha512: 43abd883b0c0d7380d94234f51ced78902327b7b1a16513ed96239a13e46b94666d108fb9e5ede4ea503f45c9843426eae26020f037e47787527bfaf14244952
ssdeep: 6144:3jO7uX366B9LhxlPcx4lMVtQmX30QkEKzxUDGxCdXk8uICfE5fTXovI9JjCkY:TO7u66B9Lh7Pcx4lYQwUzx5MdBS
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Backdoor.Win32.Emotet.gnp also known as:

MicroWorld-eScanTrojan.GenericKD.33772864
FireEyeTrojan.GenericKD.33772864
Qihoo-360Win32/Backdoor.120
McAfeeRDN/Generic.grp
ZillyaTrojan.Emotet.Win32.20300
SangforMalware
K7AntiVirusTrojan ( 005605291 )
BitDefenderTrojan.GenericKD.33772864
K7GWTrojan ( 005600261 )
TrendMicroTROJ_GEN.R002C0DE420
F-ProtW32/Emotet.AKJ.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:BankerX-gen [Trj]
ClamAVWin.Malware.Emotet-7755666-0
GDataTrojan.GenericKD.33772864
KasperskyBackdoor.Win32.Emotet.gnp
AlibabaTrojan:Win32/Emotet.ddd9e419
AegisLabTrojan.Multi.Generic.4!c
TencentMalware.Win32.Gencirc.10b9ecaa
Ad-AwareTrojan.GenericKD.33772864
SophosMal/Generic-S
ComodoMalware@#1lmqnuq102jjz
F-SecureTrojan.TR/AD.Emotet.rfwdr
VIPRETrojan.Win32.Generic!BT
Invinceaheuristic
McAfee-GW-EditionRDN/Generic.grp
EmsisoftTrojan.GenericKD.33772864 (B)
IkarusTrojan-Banker.Emotet
CyrenW32/Trojan.RDII-5487
JiangminBackdoor.Emotet.ej
WebrootW32.Trojan.Emotet
AviraTR/AD.Emotet.rfwdr
Antiy-AVLTrojan/Win32.Emotet
MicrosoftTrojan:Win32/Emotet.DED!MTB
ArcabitTrojan.Generic.D2035540
ZoneAlarmBackdoor.Win32.Emotet.gnp
AhnLab-V3Malware/Win32.RL_Generic.R335082
ALYacTrojan.GenericKD.33772864
MAXmalware (ai score=80)
VBA32Trojan.Emotet
MalwarebytesTrojan.Emotet
PandaTrj/Emotet.A
ESET-NOD32Win32/Emotet.CD
TrendMicro-HouseCallTROJ_GEN.R002C0DE420
RisingTrojan.Generic@ML.86 (RDMK:vCZp/D1HeCae1f3XxqXADw)
FortinetW32/Kryptik.HDAZ!tr
BitDefenderThetaGen:NN.Zextet.34108.QyW@aaTl!sdi
AVGWin32:BankerX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
MaxSecureTrojan.Malware.100465182.susgen

How to remove Backdoor.Win32.Emotet.gnp?

Backdoor.Win32.Emotet.gnp removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment