Backdoor

Backdoor:Win32/Tapazom.A removal guide

Malware Removal

The Backdoor:Win32/Tapazom.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor:Win32/Tapazom.A virus can do?

  • Anomalous binary characteristics

How to determine Backdoor:Win32/Tapazom.A?


File Info:

crc32: AB0E4646
md5: 6decddf36270a07e4c7e13b2d244a960
name: 6DECDDF36270A07E4C7E13B2D244A960.mlw
sha1: 4370dc94a14cec2f5fe9ff745c5b5a9878b24bb6
sha256: bfdeb6bb052e286969ab7e5cfc97e78287a54a0634334dfeba8305529e0a383d
sha512: 44c3e6978b829f2cfac1b590dc4fb131b3cf1468866244e838be0fa068d66cddb76e514a06bab29e4658e5251e54d58835a253486caa6811a5b909ed3c68bbce
ssdeep: 1536:i3ivqKQxCrHuvGQyt9Owcsx9dmGehRM/M3Y:HgCrOuQyt9OwnFIhRM/M3Y
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9Internation Systems Incorporated
InternalName: Normalize.exe
FileVersion: 10.0.1.434
CompanyName: Internation Incorporated
LegalTrademarks: xaeInternation Systems Incorporated
Comments: by Jhh tim - 2012
ProductName: Intelxae
ProductVersion: 10.0.1.434
FileDescription: File Folder
OriginalFilename: Intelxae.exe
Translation: 0x0809 0x04e4

Backdoor:Win32/Tapazom.A also known as:

K7AntiVirusTrojan ( 7000000f1 )
Elasticmalicious (high confidence)
DrWebTrojan.Winlock.7870
CynetMalicious (score: 100)
ALYacGen:Trojan.Heur.dG0@tjezv4gib
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.3603
SangforTrojan.Win32.Save.a
AlibabaBackdoor:Win32/Tapazom.4340ecde
K7GWTrojan ( 7000000f1 )
Cybereasonmalicious.36270a
ESET-NOD32a variant of Win32/Delf.OIJ
APEXMalicious
AvastWin32:Delfcrypt-AI [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Trojan.Heur.dG0@tjezv4gib
NANO-AntivirusTrojan.Win32.Winlock.cqonhp
SUPERAntiSpywareTrojan.Agent/Gen-Tapazom
MicroWorld-eScanGen:Trojan.Heur.dG0@tjezv4gib
TencentWin32.Trojan.Blocker.Wtya
Ad-AwareGen:Trojan.Heur.dG0@tjezv4gib
SophosMal/Generic-L
ComodoMalware@#28cn16ogjfhf8
BitDefenderThetaAI:Packer.441201CE1D
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_FAKEFLDR.BM
McAfee-GW-EditionGenericR-HWU!6DECDDF36270
FireEyeGeneric.mg.6decddf36270a07e
EmsisoftGen:Trojan.Heur.dG0@tjezv4gib (B)
JiangminTrojan/Blocker.azz
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1117111
eGambitGeneric.Malware
KingsoftWin32.Heur.KVM007.a.(kcloud)
MicrosoftBackdoor:Win32/Tapazom.A
ArcabitTrojan.Heur.EBEC45
AegisLabTrojan.Win32.Blocker.j!c
GDataGen:Trojan.Heur.dG0@tjezv4gib
TACHYONTrojan/W32.DP-Blocker.53760
AhnLab-V3HEUR/Fakon.mwf.X1381
McAfeeGenericR-HWU!6DECDDF36270
MAXmalware (ai score=100)
VBA32BScope.Trojan.Downloader
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_FAKEFLDR.BM
RisingBackdoor.Tapazom!8.1B77 (CLOUD)
YandexTrojan.GenAsa!qHIvmCEWB9o
IkarusBackdoor.Win32.Tapazom
FortinetW32/Delf.OIJ!tr
AVGWin32:Delfcrypt-AI [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Generic.HwUBJ9QA

How to remove Backdoor:Win32/Tapazom.A?

Backdoor:Win32/Tapazom.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment