Backdoor

Backdoor:Win32/OICQSearch.1_7 malicious file

Malware Removal

The Backdoor:Win32/OICQSearch.1_7 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor:Win32/OICQSearch.1_7 virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Backdoor:Win32/OICQSearch.1_7?


File Info:

crc32: 589225D2
md5: 5e976da9ce1e7881bd6c75d6d91b5b19
name: 5E976DA9CE1E7881BD6C75D6D91B5B19.mlw
sha1: cb80bde307a36255dfa5a5d7484e213a2a4f465b
sha256: 15ca1b84845dab0209ceae5843792bc8ab9f5d572794bd0ae6499d34abb5e560
sha512: 122751c75067946ed69588b479b95416789435503f27cce1a297903c46a5a59384e67285e546084cc27539969b8892c6b6b59486c16a61234d80457529417326
ssdeep: 192:nV26rpAsecym8GK+AX4ZXh2OsBeOwEB1JQwLkKAsHn7WDgcwgXXb/ZOob:RpCcym8GK+AX4JscwB1zLQsHStnok
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Backdoor:Win32/OICQSearch.1_7 also known as:

MicroWorld-eScanTrojan.Generic.1485113
FireEyeGeneric.mg.5e976da9ce1e7881
Qihoo-360Win32/Trojan.Multi.daf
McAfeeArtemis!5E976DA9CE1E
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Multi.Generic.4!c
SangforMalware
K7AntiVirusUnwanted-Program ( 004d38111 )
BitDefenderTrojan.Generic.1485113
K7GWUnwanted-Program ( 004d38111 )
Cybereasonmalicious.9ce1e7
BitDefenderThetaGen:NN.ZelphiF.34804.amGfaCrD4ze
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/HackTool.SystemCall.AA potentially unsafe
APEXMalicious
AvastWin32:Trojan-gen
KasperskyUDS:DangerousObject.Multi.Generic
AlibabaBackdoor:Win32/OICQSearch.c86b16ff
NANO-AntivirusTrojan.Win32.Click.eikhqr
Ad-AwareTrojan.Generic.1485113
SophosGeneric PUA ML
ComodoTrojWare.Win32.Injector.sbp@4nivqt
DrWebTrojan.Click.44866
ZillyaTrojan.Genome.Win32.2821
TrendMicroTROJ_GEN.R002C0DB421
McAfee-GW-EditionBehavesLike.Win32.Trojan.zc
EmsisoftTrojan.Generic.1485113 (B)
Antiy-AVLTrojan[Backdoor]/Win32.OICQSearch
MicrosoftBackdoor:Win32/OICQSearch.1_7
GridinsoftTrojan.Win32.Downloader.oa
ArcabitTrojan.Generic.D16A939
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataTrojan.Generic.1485113
CynetMalicious (score: 100)
TotalDefenseWin32/Gamepass.BB
ALYacTrojan.Generic.1485113
MAXmalware (ai score=100)
MalwarebytesMalware.Heuristic.1003
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0DB421
RisingBackdoor.OICQSearch!8.11C1 (CLOUD)
YandexHackTool.SystemCall!uSI3hbBd8D8
IkarusBackdoor.Win32.OICQSearch
FortinetW32/Malware_fam.NB
AVGWin32:Trojan-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)
MaxSecureTrojan.Malware.2588.susgen

How to remove Backdoor:Win32/OICQSearch.1_7?

Backdoor:Win32/OICQSearch.1_7 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment