Backdoor

What is “Backdoor.Win32.NetWiredRC.krc”?

Malware Removal

The Backdoor.Win32.NetWiredRC.krc is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Win32.NetWiredRC.krc virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Backdoor.Win32.NetWiredRC.krc?


File Info:

crc32: D5F359AD
md5: efe01ee6ec8fe3b46e8bb556afcfc8e9
name: nw1.exe
sha1: 5ce705e0a2d6f8c0b2f79284e272add31219397a
sha256: d048695c28ec486a912076d0a14fe8fe8e6d50e2defc5867e5ac789a4cd5385b
sha512: 3a6104e40a8f0a9f1eadce507074fbaf9bbfe22413674ef99596dc5888f9f1cd6bc4997f9004862134ed8dc6fc8e70d7f8bf963532b95cda804299a9fd4dd2fd
ssdeep: 1536:cXnwDOcUHxR8e8hh4oQ0o1bcaeMFWTkMahP:4Zc4xR8xhhg0m71
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: Okkupa5
FileVersion: 1.00
CompanyName: WOnderware
Comments: WOnderware
ProductName: Paramete2
ProductVersion: 1.00
FileDescription: Ogsmor
OriginalFilename: Okkupa5.exe

Backdoor.Win32.NetWiredRC.krc also known as:

MicroWorld-eScanTrojan.GenericKD.42904517
McAfeeArtemis!EFE01EE6EC8F
MalwarebytesTrojan.GuLoader
AegisLabTrojan.Multi.Generic.4!c
K7AntiVirusTrojan ( 005638fa1 )
BitDefenderTrojan.GenericKD.42904517
K7GWTrojan ( 005638fa1 )
CyrenW32/Kryptik.BIF.gen!Eldorado
ESET-NOD32a variant of Win32/Injector.ELGX
APEXMalicious
KasperskyBackdoor.Win32.NetWiredRC.krc
Ad-AwareTrojan.GenericKD.42904517
EmsisoftTrojan.GenericKD.42904517 (B)
F-SecureTrojan.TR/AD.VBCryptor.amqeb
DrWebTrojan.PackedENT.136
McAfee-GW-EditionBehavesLike.Win32.Trojan.ct
FortinetW32/ELGX!tr
Trapminesuspicious.low.ml.score
SophosMal/Generic-S
IkarusTrojan.Win32.Injector
F-ProtW32/Kryptik.BIF.gen!Eldorado
AviraTR/AD.VBCryptor.amqeb
MAXmalware (ai score=87)
Antiy-AVLTrojan/Win32.Casur
ZoneAlarmBackdoor.Win32.NetWiredRC.krc
MicrosoftTrojan:Win32/Wacatac.C!ml
CylanceUnsafe
PandaTrj/Genetic.gen
eGambitUnsafe.AI_Score_99%
GDataWin32.Trojan-Downloader.Dagurleo.2EFRVU
BitDefenderThetaGen:NN.ZevbaF.34104.gm0@ay3MpUfi
AVGFileRepMalware
AvastFileRepMalware
CrowdStrikewin/malicious_confidence_80% (W)
Qihoo-360Trojan.Generic

How to remove Backdoor.Win32.NetWiredRC.krc?

Backdoor.Win32.NetWiredRC.krc removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment