Backdoor

Backdoor:IRC/Critical.kit removal tips

Malware Removal

The Backdoor:IRC/Critical.kit is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor:IRC/Critical.kit virus can do?

  • A file was accessed within the Public folder.
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • CAPE detected the shellcode patterns malware family
  • Deletes executed files from disk
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Backdoor:IRC/Critical.kit?


File Info:

name: 944A3CC69FA8C3FF94D1.mlw
path: /opt/CAPEv2/storage/binaries/743eee225c944592c22a16a8bee8900bf4efebbcf2fd044b40c62acf7c0f0456
crc32: 93D65EB0
md5: 944a3cc69fa8c3ff94d1352c1e6df482
sha1: 196b64da5db66563dbc34b7475a5601fd7ae77a9
sha256: 743eee225c944592c22a16a8bee8900bf4efebbcf2fd044b40c62acf7c0f0456
sha512: 4edea1612c555a4048ef8dd9b8f6c6bf9698e7aec6b896b49023c7d05ddc2b135560b596ecee1672dc12bd6c05fba5b52b188d6ce4aa4ae24ec26c029efa5c63
ssdeep: 24576:skThSaWLrEDw2v4KWFN/PUuW0emTjCcGJ48SKCuo3p5l:skThSaWnEDVI/PTWXmTjAn9CuypD
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14B55339F0A811FD6D11D0EF7688A83516E7FAC3B0278A4DAE3A52632DCDD09F45C214A
sha3_384: 9ad0abc23a42ac9acbc9fff83d69760986f49cc34bca71b8ddf1876ada67d5bc6fca919c104ddad1f0a5e9127b9fc2f9
ep_bytes: 558bec81ec140400005356576a00ff15
timestamp: 1999-10-06 10:33:39

Version Info:

0: [No Data]

Backdoor:IRC/Critical.kit also known as:

BkavW32.Common.BF360147
LionicTrojan.Win32.Critical.m!c
MicroWorld-eScanTrojan.Winos.B
FireEyeTrojan.Winos.B
SkyhighIRC/Flood.fg.dr
ALYacTrojan.Winos.B
MalwarebytesGeneric.Malware/Suspicious
SangforBackdoor.Win32.Irc.V55x
K7AntiVirusRiskware ( 0040eff71 )
AlibabaBackdoor:Win32/Critical.9a666677
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.69fa8c
VirITBackdoor.Win32.FLOOD
SymantecIRC Trojan
ESET-NOD32IRC/Critical
TrendMicro-HouseCallTROJ_GEN.R002C0CBE24
KasperskyBackdoor.IRC.Critical
BitDefenderTrojan.Winos.B
NANO-AntivirusTrojan.Win32.Critical.fvlt
AvastWin32:Trojan-gen
TencentMalware.Win32.Gencirc.13c09651
TACHYONBackdoor/W32.Agent.1389371
EmsisoftTrojan.Winos.B (B)
F-SecureTrojan.TR/FakeAV.05
DrWebTrojan.Critical
VIPRETrojan.Winos.B
TrendMicroTROJ_GEN.R002C0CBE24
SophosMal/Generic-S
IkarusTrojan.IRC.Critical
JiangminBackdoor/IRC.Critical
GoogleDetected
AviraTR/FakeAV.05
VaristW32/Trojan.TTRD-8451
KingsoftWin32.Troj.Unknown.a
MicrosoftBackdoor:IRC/Critical.kit
XcitiumBackdoor@#1rzxnhykatj2s
ArcabitTrojan.Winos.B
ZoneAlarmBackdoor.IRC.Critical
GDataTrojan.Winos.B
McAfeeIRC/Flood.fg.dr
MAXmalware (ai score=100)
VBA32Trojan.Winos
Cylanceunsafe
PandaBackdoor Program
RisingBackdoor.IRC.Critical.a (CLASSIC)
MaxSecureTrojan.Malware.1375489.susgen
FortinetIRC/Critical.A!tr.bdr
AVGWin32:Trojan-gen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)
alibabacloudBackdoor:Multi/Critical

How to remove Backdoor:IRC/Critical.kit?

Backdoor:IRC/Critical.kit removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment