Backdoor

About “Backdoor:Win32/Androm.RJ!MTB” infection

Malware Removal

The Backdoor:Win32/Androm.RJ!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor:Win32/Androm.RJ!MTB virus can do?

  • Anomalous binary characteristics

How to determine Backdoor:Win32/Androm.RJ!MTB?


File Info:

crc32: 89E2731A
md5: 3d3c42f1e8978a60cdf179841d6734ad
name: 3D3C42F1E8978A60CDF179841D6734AD.mlw
sha1: 90d91491b81cfc1dae899aff28c56937bbadce8e
sha256: f02213dd373e6d5d9bea4f366b2cfd983e278731be7d59171de6be27a482becf
sha512: 8be0ebc704e8f349b8f778c99fda93281d7e4957f48c5914087f7a31304696c88847125c9f8b5828cb8e399c5240ff1c9be0e6c50079c2d5b144f493bfd36c48
ssdeep: 3072:JPA6jXFN2Mc+xDcJgigngtZDs/aIV8OcBwb4CZddBEL9Do/VuEpVj+vBf:Jhjm2dcJgfYoSIrbvLEx2XjC
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

ProductName: obsolete
Translation: 0x0409 0x0000

Backdoor:Win32/Androm.RJ!MTB also known as:

K7AntiVirusRiskware ( 0040eff71 )
DrWebTrojan.Siggen9.48175
CynetMalicious (score: 90)
McAfeeRDN/Generic.cf
SangforTrojan.Win32.Save.a
AlibabaBackdoor:Win32/Androm.6c0eddd3
K7GWRiskware ( 0040eff71 )
CyrenW32/Injector.AFV.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Generik.GFGNJGQ
APEXMalicious
AvastWin32:PWSX-gen [Trj]
KasperskyTrojan.Win32.Agent.xahffe
BitDefenderDropped:Trojan.GenericKD.36518699
MicroWorld-eScanDropped:Trojan.GenericKD.36518699
Ad-AwareDropped:Trojan.GenericKD.36518699
SophosMal/Generic-S
ComodoTrojWare.Win32.Agent.dkpew@0
McAfee-GW-EditionBehavesLike.Win32.ICLoader.dc
FireEyeGeneric.mg.3d3c42f1e8978a60
EmsisoftDropped:Trojan.GenericKD.36518699 (B)
SentinelOneStatic AI – Suspicious PE
AviraTR/AD.Swotter.nvgfs
KingsoftWin32.Troj.Agent.(kcloud)
MicrosoftBackdoor:Win32/Androm.RJ!MTB
AegisLabTrojan.Win32.Generic.4!c
GDataWin32.Trojan-Stealer.FormBook.OO46BY
MAXmalware (ai score=84)
MalwarebytesMalware.Heuristic.1001
IkarusTrojan.Win32.Injector
FortinetW32/Injector.EOWC!tr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Generic.HoMASQ8A

How to remove Backdoor:Win32/Androm.RJ!MTB?

Backdoor:Win32/Androm.RJ!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment