Backdoor

Backdoor.Win32.Konus.sf information

Malware Removal

The Backdoor.Win32.Konus.sf is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Win32.Konus.sf virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Queries information on disks, possibly for anti-virtualization
  • Network activity detected but not expressed in API logs

How to determine Backdoor.Win32.Konus.sf?


File Info:

crc32: 347B4A1E
md5: f5fb35e6942d61210079c3ea5a51493e
name: F5FB35E6942D61210079C3EA5A51493E.mlw
sha1: 6ddbb9e84ed595781814eadf07ec65e35350ab79
sha256: 1aa2009bf625cdd1f9fce70863201c2c9fc8624edd89103fda2e49b50ba908f7
sha512: 91856dec3eaa6418a1ea19d0094a27f11e25fc8c6e47492149e1f7bc7a22314e850f38a6104e5a130b99c4c18d44a50a0403ccb4c4bef6e72c73e6c51e978b37
ssdeep: 12288:rXPcLcbGfVylwG/ZDCK/ScBXo8TsyMkKMY8m7WOK9HATTsx/SA/WegYfdNbrqnu:rXh6XcBXo8TsL8Y8muATTySA/DrfdNb
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Backdoor.Win32.Konus.sf also known as:

BkavW32.AIDetectGBM.malware.02
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Heur.Mint.Zard.25
FireEyeGeneric.mg.f5fb35e6942d6121
McAfeeGenericRXNP-XC!F5FB35E6942D
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusSpyware ( 00539c471 )
BitDefenderGen:Heur.Mint.Zard.25
K7GWSpyware ( 00539c471 )
Cybereasonmalicious.6942d6
BitDefenderThetaAI:Packer.10C3B9AA1E
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Trojan-gen
KasperskyBackdoor.Win32.Konus.sf
NANO-AntivirusTrojan.Win32.Konus.ilrxvn
Ad-AwareGen:Heur.Mint.Zard.25
EmsisoftGen:Heur.Mint.Zard.25 (B)
F-SecureHeuristic.HEUR/AGEN.1116604
DrWebTrojan.PWS.Banker1.36652
ZillyaBackdoor.Konus.Win32.70
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
SophosMal/Generic-R + Troj/Konus-A
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.Konus.ch
eGambitUnsafe.AI_Score_98%
AviraHEUR/AGEN.1116604
Antiy-AVLTrojan[Backdoor]/Win32.Konus
MicrosoftBackdoor:Win32/Konus.A
GridinsoftTrojan.Win32.Agent.oa!s1
ArcabitTrojan.Mint.Zard.25
ZoneAlarmBackdoor.Win32.Konus.sf
GDataGen:Heur.Mint.Zard.25
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.RL_Banker.R277924
Acronissuspicious
VBA32TScope.Malware-Cryptor.SB
MAXmalware (ai score=86)
MalwarebytesMalware.AI.4083686688
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Spy.Kronosbot.A
RisingBackdoor.Konus!8.AC8 (TFE:4:AZHb6kQpy7P)
IkarusTrojan.Win32.Agent
MaxSecureTrojan.Malware.114274721.susgen
AVGWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_80% (D)
Qihoo-360HEUR/QVM20.1.80C5.Malware.Gen

How to remove Backdoor.Win32.Konus.sf?

Backdoor.Win32.Konus.sf removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment