Backdoor

Backdoor.Win32.Plite.bhud malicious file

Malware Removal

The Backdoor.Win32.Plite.bhud is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Win32.Plite.bhud virus can do?

  • Unconventionial language used in binary resources: Korean
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Backdoor.Win32.Plite.bhud?


File Info:

name: B620D60B38F22E8AF450.mlw
path: /opt/CAPEv2/storage/binaries/6a1c5e6b1fb27800388aaa1bcfd8be282b11f497dd59c8450098b2d8b2007178
crc32: B9D5BC35
md5: b620d60b38f22e8af45046fd0b713ce0
sha1: 98cc997bffa8528bffff3483b70d590cf9e4f284
sha256: 6a1c5e6b1fb27800388aaa1bcfd8be282b11f497dd59c8450098b2d8b2007178
sha512: 6731bf2d2ac94a900a7736eeae7902cf5db4c12de3fe6c8f8f34f041aeadd28ecc285536b61c8f17da14d139564a7f85839939fb1215c9048d70461d1146dffd
ssdeep: 12288:76twjLHj/8/GcHUIdPv4EmvTnabAh0ZnAr1U:76tQCG0UUv4EkTn4AC1+
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B4A4BE217290C035E3A623724996D6746AA4BD345A60A68FF6E83F795F301D39B3730F
sha3_384: 7dfc47fe4344a8f562cc00bfbae6da2eb8bbf988b46d310cd62b94a044469a163164bba89b3c2e2f1676ab621dba3822
ep_bytes: e80ea10000e979feffff8bff558bec51
timestamp: 2013-11-08 01:45:29

Version Info:

0: [No Data]

Backdoor.Win32.Plite.bhud also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (moderate confidence)
DrWebTrojan.DownLoader10.41824
MicroWorld-eScanGen:Variant.Zusy.424822
FireEyeGeneric.mg.b620d60b38f22e8a
McAfeeBackDoor-FBLQ!B620D60B38F2
CylanceUnsafe
VIPREGen:Variant.Zusy.424822
SangforWorm.Win32.Save.a
K7AntiVirusTrojan ( 00595f081 )
BitDefenderGen:Variant.Zusy.424822
K7GWTrojan ( 00595f081 )
Cybereasonmalicious.b38f22
BitDefenderThetaGen:NN.ZexaF.34806.BmW@auQXjLdO
VirITTrojan.Win32.Dnldr10.CJWQ
CyrenW32/Urelas.AP.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Urelas.X
APEXMalicious
ClamAVWin.Trojan.Urelas-6804556-0
KasperskyBackdoor.Win32.Plite.bhud
NANO-AntivirusTrojan.Win32.Plite.hdyyae
RisingTrojan.Win32.Gupboot.a (CLASSIC)
Ad-AwareGen:Variant.Zusy.424822
SophosMal/Generic-S
ComodoTrojWare.Win32.Urelas.ET@5ihp6w
F-SecureHeuristic.HEUR/AGEN.1246349
BaiduWin32.Trojan.Urelas.a
ZillyaBackdoor.Plite.Win32.798
McAfee-GW-EditionBackDoor-FBLQ!B620D60B38F2
IkarusTrojan.Win32.Urelas
JiangminBackdoor/Plite.cd
AviraHEUR/AGEN.1246349
Antiy-AVLTrojan[Backdoor]/Win32.Plite
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Zusy.D67B76
ZoneAlarmBackdoor.Win32.Plite.bhud
GDataWin32.Trojan.PSE.1M9I3UI
AhnLab-V3Trojan/Win32.Urelas.R87160
ALYacGen:Variant.Zusy.424822
MAXmalware (ai score=83)
MalwarebytesTrojan.Urelas
TencentTrojan.Win32.Urelas.16000132
YandexBackdoor.Plite!dxCxpBeWlr4
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Urelas.U!tr
AVGWin32:Dropper-NGS [Drp]
AvastWin32:Dropper-NGS [Drp]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Backdoor.Win32.Plite.bhud?

Backdoor.Win32.Plite.bhud removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment