Backdoor

Backdoor:Win32/DTR.D removal tips

Malware Removal

The Backdoor:Win32/DTR.D is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor:Win32/DTR.D virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Creates a copy of itself

How to determine Backdoor:Win32/DTR.D?


File Info:

name: FB1630C84A3582B910CC.mlw
path: /opt/CAPEv2/storage/binaries/454212841ae90fdd946625d716ed32ddfd2c302f5786c1aa64894acf168a9c9a
crc32: 43A0DD9A
md5: fb1630c84a3582b910cc8f639faf84fb
sha1: 8e59b0ce0e1a753eafeb4c02e0c798f8397267f4
sha256: 454212841ae90fdd946625d716ed32ddfd2c302f5786c1aa64894acf168a9c9a
sha512: 021f7c6f28b8fabb8876cfe09e7184046294d580ebacc8ae9b2f0689b9f8c54538cbcdf856191619f05f66fcf8170eefd6c5970090bd04b86c673efdaa7a1b73
ssdeep: 768:GcXBA0xHzqe56BpJas4pWoxjQHvLMANiBMxUYszCJN6FHXfav:BBAEwSsPyQoANiBbuCFHC
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13723502DDC2A20DAEEA085F36FF68BF4D75486740D0A8624F38C2A5015751BFCF94B28
sha3_384: 4225198bf9c50566363699c9b2e0f7fbf3deddf6c51926b469e678577df94def9aff9af1a4cc903b84f0e9ac4e5eb02e
ep_bytes: c6059149420000680e1a00006830e541
timestamp: 2004-02-10 07:37:02

Version Info:

0: [No Data]

Backdoor:Win32/DTR.D also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.DTR.m!c
tehtrisGeneric.Malware
MicroWorld-eScanDropped:Backdoor.Dtr.17.D
FireEyeGeneric.mg.fb1630c84a3582b9
ALYacDropped:Backdoor.Dtr.17.D
CylanceUnsafe
SangforBackdoor.Win32.DTR.d
K7AntiVirusTrojan ( 000010fc1 )
AlibabaBackdoor:Win32/Generic.6cba3551
K7GWTrojan ( 000010fc1 )
Cybereasonmalicious.84a358
CyrenW32/DTR.A.gen!Eldorado
SymantecBackdoor.DTR
Elasticmalicious (high confidence)
ESET-NOD32Win32/DTR.AD
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Agent-980831
KasperskyBackdoor.Win32.DTR.17.d
BitDefenderDropped:Backdoor.Dtr.17.D
NANO-AntivirusTrojan.Win32.DTR.ttoe
AvastWin32:Trojan-gen
TencentWin32.Backdoor.Dtr.Ectq
Ad-AwareDropped:Backdoor.Dtr.17.D
SophosMal/Generic-S
ComodoBackdoor@#35gmrw54i0jei
DrWebTrojan.Siggen5.8542
VIPREDropped:Backdoor.Dtr.17.D
TrendMicroBKDR_DTR.A
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.pm
Trapminemalicious.high.ml.score
EmsisoftDropped:Backdoor.Dtr.17.D (B)
IkarusBackdoor.Win32
JiangminBackdoor/DTR.s
WebrootW32.Malware.Gen
GoogleDetected
AviraTR/Downloader.Gen
Antiy-AVLTrojan/Generic.ASMalwS.C01
KingsoftWin32.Hack.DTR.17.(kcloud)
MicrosoftBackdoor:Win32/DTR.D
GDataDropped:Backdoor.Dtr.17.D
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Dtr.R103922
McAfeeGenericRXQP-SL!FB1630C84A35
MAXmalware (ai score=100)
VBA32BScope.Backdoor.Lithium
MalwarebytesMalware.AI.3211651274
TrendMicro-HouseCallBKDR_DTR.A
RisingBackdoor.DTR.17.d (CLASSIC)
YandexTrojan.GenAsa!AO7CaMS6sZE
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.1587408.susgen
BitDefenderThetaAI:Packer.A4F69C6C21
AVGWin32:Trojan-gen
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Backdoor:Win32/DTR.D?

Backdoor:Win32/DTR.D removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment