Backdoor

Backdoor:Win32/Amitis.I information

Malware Removal

The Backdoor:Win32/Amitis.I is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor:Win32/Amitis.I virus can do?

  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Sniffs keystrokes
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Backdoor:Win32/Amitis.I?


File Info:

crc32: 558808EC
md5: 4370a10c3d7ed590493bbf00d77f1cc6
name: 4370A10C3D7ED590493BBF00D77F1CC6.mlw
sha1: 418476e0a39fa209badb011acfc34091060fd18e
sha256: c9c14da83bf1a410b9d74530cff4fc32cf0dae7a602aea50294c210a07bfc7a8
sha512: 7adae41b0ebb1a83e21c877b76e573921f9b331b7984d17fb8ab08875980d44c02024ccdce13c5c9b3240b50509380e78348324978738329805678d94d71ba7d
ssdeep: 6144:OuAu3WRjfC8dW2LasbqHtx7mdoKStk267qD0sbFifEerr4DBj:Ojum1TdjLasbEpmdoKnqD0sBifZrr49
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Backdoor:Win32/Amitis.I also known as:

K7AntiVirusTrojan ( 7000000f1 )
DrWebBackDoor.Amitist.13
CynetMalicious (score: 100)
ALYacGeneric.Malware.GSMVkb.9E4E6734
CylanceUnsafe
ZillyaBackdoor.Amitis.Win32.9
SangforTrojan.Win32.Save.a
K7GWTrojan ( 7000000f1 )
Cybereasonmalicious.c3d7ed
CyrenW32/Amitis.WOKP-4079
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Amitis.A
APEXMalicious
AvastWin32:Amitis-E [Trj]
ClamAVWin.Trojan.Amitis-1
KasperskyTrojan-Ransom.Win32.PornoAsset.dckk
BitDefenderGeneric.Malware.GSMVkb.9E4E6734
NANO-AntivirusTrojan.Win32.Amitis.dbhy
MicroWorld-eScanGeneric.Malware.GSMVkb.9E4E6734
TencentMalware.Win32.Gencirc.10c8b1b0
Ad-AwareGeneric.Malware.GSMVkb.9E4E6734
SophosMal/Generic-S
ComodoBackdoor.Win32.Amitis.13@2ywo
BitDefenderThetaGen:NN.ZelphiF.34088.tmGfa05k2uii
VIPREBackdoor.Win32.Amitis.143 (fs)
TrendMicroBKDR_AMITIS.B
McAfee-GW-EditionBackDoor-AKZ
FireEyeGeneric.mg.4370a10c3d7ed590
EmsisoftGeneric.Malware.GSMVkb.9E4E6734 (B)
SentinelOneStatic AI – Suspicious PE
JiangminBackdoor/Amitis.p
AviraBDS/Amitis.13.Srv.1
eGambitUnsafe.AI_Score_98%
Antiy-AVLTrojan/Generic.ASMalwS.359EE
MicrosoftBackdoor:Win32/Amitis.I
GDataGeneric.Malware.GSMVkb.9E4E6734
AhnLab-V3Trojan/Win32.Amitis.R134603
McAfeeBackDoor-AKZ
MAXmalware (ai score=100)
VBA32BScope.Backdoor.Amitis
PandaBck/Amitis.F
TrendMicro-HouseCallBKDR_AMITIS.B
RisingBackdoor.Amitis.13 (CLASSIC)
YandexTrojan.GenAsa!2LtOHbHaR60
IkarusBackdoor.Win32.Danton
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Amitis.13!tr.bdr
AVGWin32:Amitis-E [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.PornoAsset.HwsBEpsA

How to remove Backdoor:Win32/Amitis.I?

Backdoor:Win32/Amitis.I removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment