Backdoor

Backdoor:Win32/ColdDeath malicious file

Malware Removal

The Backdoor:Win32/ColdDeath is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor:Win32/ColdDeath virus can do?

  • Creates RWX memory
  • Unconventionial language used in binary resources: Russian
  • Anomalous binary characteristics

How to determine Backdoor:Win32/ColdDeath?


File Info:

crc32: 2C7CE314
md5: b4122919338c2f9757dc1771552e60b4
name: B4122919338C2F9757DC1771552E60B4.mlw
sha1: be25cafe059fb1cee640ae874f85c6652c909ce7
sha256: 90799fb01f26d2c3f58c421a3693c8e79094a79a84ed3e0e53f797a54edec520
sha512: 713388a61addbca0a789fed10c22b35f4e73b49fd7c6cd1be6c13204850d4461c53db17e913661738016d23aea3c5bc85bcb7c57412a6ed275f99e955fdf60ed
ssdeep: 12288:ZsjZ+oTwCgwgtAo0xW7pi197KUvWJmDoKeFs6Kz:E6NtPXp8/vWQ8Ke+
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Backdoor:Win32/ColdDeath also known as:

DrWebBackDoor.ColdDeath.10
ALYacBackdoor.Colddeath.1.1
CylanceUnsafe
ZillyaBackdoor.ColdDeath.Win32.5
CrowdStrikewin/malicious_confidence_60% (D)
BitDefenderBackdoor.Colddeath.1.1
Cybereasonmalicious.9338c2
SymantecML.Attribute.HighConfidence
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:Backdoor.Win32.ColdDeath
AlibabaBackdoor:Win32/ColdDeath.80d128ce
NANO-AntivirusTrojan.Win32.ColdDeath-Bd-0.felg
MicroWorld-eScanBackdoor.Colddeath.1.1
Ad-AwareBackdoor.Colddeath.1.1
SophosTroj/ColdDea-A
ComodoBackdoor@#31wdmpsowvzae
BitDefenderThetaGen:NN.ZelphiF.34678.SGW@aWgu!fmc
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBackDoor-APV
FireEyeGeneric.mg.b4122919338c2f97
EmsisoftBackdoor.Colddeath.1.1 (B)
JiangminBackdoor/ColdDeath.a
WebrootW32.Backdoor.Win32.Colddeath
AviraBDS/ColdDeath.A.3
eGambitGeneric.Backdoor
MicrosoftBackdoor:Win32/ColdDeath
ArcabitBackdoor.Colddeath.1.1
GDataBackdoor.Colddeath.1.1
AhnLab-V3Trojan/Win32.HDC.C156551
McAfeeArtemis!B4122919338C
MAXmalware (ai score=99)
VBA32Backdoor.ColdDeath
PandaBck/ColdDeath
RisingBackdoor.ColdDeath!8.7240 (TFE:dGZlOgXoXpfuekHuFQ)
YandexTrojan.GenAsa!wEiXDBPvEFI
FortinetW32/ColdDeath.A!tr.bdr
Qihoo-360Win32/Backdoor.Generic.HgAASRsA

How to remove Backdoor:Win32/ColdDeath?

Backdoor:Win32/ColdDeath removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment