Backdoor

Backdoor.Win32.Trioxygen.ao removal tips

Malware Removal

The Backdoor.Win32.Trioxygen.ao is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Win32.Trioxygen.ao virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Backdoor.Win32.Trioxygen.ao?


File Info:

name: 7C272CF7261236D4E9AE.mlw
path: /opt/CAPEv2/storage/binaries/ac251baef7379249b67681925adccdeb016946cb93458604a716552853e148d8
crc32: 41FD86B7
md5: 7c272cf7261236d4e9aecca593598f10
sha1: 4d46dfd05a3f6f0f98c61b234c9bac07c296759f
sha256: ac251baef7379249b67681925adccdeb016946cb93458604a716552853e148d8
sha512: e289a8c927ff99d94556c9d9857441855422214068403ae1794d943c76da1bbc86e66199822164b1f1c6e7740496b758c7d9469870a0852a28a2c19b6e934116
ssdeep: 24576:sBO3OLVW75Xf1Lw268hvjLv9ja5jt8ctibwp/lEreo+WAdZuaSE2Es1:G29XJOibwp/lEodZuaSE2Es1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F7859E33CB607984E28344B148696BB968257C3560069D8FF28DBD592B71FC37EB931B
sha3_384: 96c891167a6413e6f458de34e8ddb7a65f7e761094b056295de9606bea20365db7bb923efc12c6410e9c39cbfadd5c6f
ep_bytes: 687c594000e8f0ffffff000048000000
timestamp: 2010-05-19 23:02:51

Version Info:

Translation: 0x0409 0x04b0
Comments: Créé par mworld
CompanyName: monier
LegalCopyright: Madagascar 2007(c)
ProductName: Gestion de Stock
FileVersion: 1.00
ProductVersion: 1.00
InternalName: Gestion de Stock
OriginalFilename: Gestion de Stock.exe

Backdoor.Win32.Trioxygen.ao also known as:

LionicTrojan.Win32.Trioxygen.m!c
MicroWorld-eScanTrojan.GenericKD.38245163
FireEyeTrojan.GenericKD.38245163
CynetMalicious (score: 99)
KasperskyBackdoor.Win32.Trioxygen.ao
BitDefenderTrojan.GenericKD.38245163
Ad-AwareTrojan.GenericKD.38245163
McAfee-GW-EditionArtemis
EmsisoftTrojan.GenericKD.38245163 (B)
AviraHEUR/AGEN.1122150
MAXmalware (ai score=84)
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
GDataTrojan.GenericKD.38245163
McAfeeArtemis!7C272CF72612
APEXMalicious

How to remove Backdoor.Win32.Trioxygen.ao?

Backdoor.Win32.Trioxygen.ao removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment