The Backdoor.XpertRAT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.
What Backdoor.XpertRAT virus can do?
z.whorecord.xyz |
a.tomx.xyz |
File Info:
crc32: 173FA2E5md5: 870fdad769262715ea10aed9c9f724f4name: RFQ_PO_7645321875.exesha1: ddb6654c1a408fb8e55b3b1d8506e7d1e4d54d6dsha256: ff9d837e464eb07ad603c0b2ac0a35029117123c31570baeb61fca9a0242b493sha512: a0227797adcceb27e12c7ef49b9eaa4a9814d85136e35a162b589dd3eccf8339b62cbec3f924fcf0cf317a55d068d393d66363c20cd0fcac86c3c3ad43e9f63dssdeep: 6144:nWZZ48Scl5iERbSvWhmVv2NwaOy+JhbJFpNVB7Uvm:nIZHScl5iERbSvWhmVv2Nwax+JhbJFpttype: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS WindowsVersion Info:
LegalCopyright: xa9 x513fx513fx5409. All rights reserved.Assembly Version: 0.2.5.7FileVersion: 0.7.6.2CompanyName: x513fx6770x897fLegalTrademarks: x6770x827ex513fComments: x6770x5409x827e x5fb7x513fx5fb7ProductName: x897fx6770x5409 x5409x897fx5409ProductVersion: 0.2.5.7FileDescription: x5fb7x5409x6770 x5409x6770x897fOriginalFilename: x897fx6770x5409 x5409x897fx5409.exeTranslation: 0x0409 0x0514
Elastic | malicious (high confidence) |
FireEye | Generic.mg.870fdad769262715 |
Qihoo-360 | Generic/HEUR/QVM03.0.8956.Malware.Gen |
McAfee | PWS-FCRO!870FDAD76926 |
Cylance | Unsafe |
Sangfor | Malware |
K7AntiVirus | Trojan ( 00570e301 ) |
K7GW | Trojan ( 00570e301 ) |
CrowdStrike | win/malicious_confidence_80% (W) |
Invincea | Generic ML PUA (PUA) |
Cyren | W32/MSIL_Agent.BPW.gen!Eldorado |
Symantec | ML.Attribute.HighConfidence |
Kaspersky | HEUR:Trojan.MSIL.Injects.gen |
DrWeb | Trojan.Siggen10.36869 |
TrendMicro | TROJ_FRS.VSNTJC20 |
McAfee-GW-Edition | Artemis!Trojan |
Ikarus | Trojan.MSIL.Crypt |
Microsoft | Trojan:Win32/Wacatac.C!ml |
ZoneAlarm | HEUR:Trojan.MSIL.Injects.gen |
BitDefenderTheta | Gen:NN.ZemsilF.34298.qm1@amVJVBni |
Malwarebytes | Backdoor.XpertRAT |
ESET-NOD32 | a variant of MSIL/Kryptik.YDQ |
TrendMicro-HouseCall | TROJ_FRS.VSNTJC20 |
SentinelOne | DFI – Malicious PE |
eGambit | Unsafe.AI_Score_99% |
Fortinet | Malicious_Behavior.SB |
AVG | FileRepMalware |
Paloalto | generic.ml |
The Barys.385087 is considered dangerous by lots of security experts. When this infection is active,…
The PWS:Win32/Chyup.B is considered dangerous by lots of security experts. When this infection is active,…
The Trojan.Win32.Agent.xboakk is considered dangerous by lots of security experts. When this infection is active,…
The Worm.Win32.Vobfus.efoh is considered dangerous by lots of security experts. When this infection is active,…
The Generic.Malware.Lco.500CC679 is considered dangerous by lots of security experts. When this infection is active,…
The Trojan:Win32/Plugx.B is considered dangerous by lots of security experts. When this infection is active,…