Backdoor

Backdoor:Win32/Weemurl.B!dha removal tips

Malware Removal

The Backdoor:Win32/Weemurl.B!dha is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor:Win32/Weemurl.B!dha virus can do?

  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
kumar8099.skyrock.com
kumar8099.wordpress.com

How to determine Backdoor:Win32/Weemurl.B!dha?


File Info:

crc32: 6926E053
md5: a5bd39bf17d389340b2d80d060860d7b
name: a38df3ec8b9fe52a32860cf5756d2fe345badafd7e74466cd349eb32ba5cc339
sha1: 120f60dd1712956dac31100392058a3dd3a3aebb
sha256: a38df3ec8b9fe52a32860cf5756d2fe345badafd7e74466cd349eb32ba5cc339
sha512: e4484a19f651df5d9eca8f7ffcaa2efe54cfe8c54e675aeb568b0877ba7096b8fdb8604b48aee97ea4901a0054130e3f703242e378a3a87bb8ad91b64396ee16
ssdeep: 192:f3sPXGUN/fP1oyngJBzFMyckGxQP+f2zXK6JHe2VuJoLboF:f3I/n1yfzF1ckis+Nwu+LbG
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Backdoor:Win32/Weemurl.B!dha also known as:

BkavW32.PirudaB.Trojan
MicroWorld-eScanGen:Variant.Graftor.103349
CAT-QuickHealTrojan.Mauvaise.SL1
McAfeeGenericRXFZ-HZ!A5BD39BF17D3
CylanceUnsafe
K7AntiVirusTrojan ( 004ecc6e1 )
BitDefenderGen:Variant.Graftor.103349
K7GWTrojan ( 004ecc6e1 )
Cybereasonmalicious.f17d38
TrendMicroTROJ_GEN.R002C0CCE19
F-ProtW32/WMIGhost.A.gen!Eldorado
SymantecBackdoor.Trojan
AvastWin32:Thetatic-A [Spy]
GDataGen:Variant.Graftor.103349
KasperskyBackdoor.Win32.Thetatic.h
AlibabaBackdoor:Win32/Thetatic.e57a8c8b
NANO-AntivirusTrojan.Win32.Syndicasec.cvidry
ViRobotTrojan.Win32.Z.Syndicasec.20480.D
AegisLabTrojan.Win32.Thetatic.4!c
RisingBackdoor.Win32.Weemurl.a (CLASSIC)
Ad-AwareGen:Variant.Graftor.103349
SophosTroj/Thetatic-G
ComodoMalware@#1chki8ee8wx6o
F-SecureHeuristic.HEUR/AGEN.1018775
DrWebTrojan.Wmighost.4
ZillyaTrojan.Syndicasec.Win32.6
McAfee-GW-EditionGenericRXFZ-HZ!A5BD39BF17D3
Trapminesuspicious.low.ml.score
EmsisoftGen:Variant.Graftor.103349 (B)
IkarusTrojan.Win32.Syndicasec
CyrenW32/WMIGhost.A.gen!Eldorado
JiangminTrojan.Wcl.a
WebrootW32.Gen.BT
AviraHEUR/AGEN.1018775
MAXmalware (ai score=85)
Antiy-AVLTrojan/Win32.Tgenic
Endgamemalicious (high confidence)
ArcabitTrojan.Graftor.D193B5
SUPERAntiSpywareTrojan.Agent/Gen-Scripter
ZoneAlarmBackdoor.Win32.Thetatic.h
MicrosoftBackdoor:Win32/Weemurl.B!dha
AhnLab-V3Trojan/Win32.Agent.R147982
Acronissuspicious
ALYacGen:Variant.Graftor.103349
VBA32BScope.Backdoor.Thetatic
PandaTrj/GdSda.A
ESET-NOD32Win32/Syndicasec.C
TrendMicro-HouseCallTROJ_GEN.R002C0CCE19
TencentWin32.Backdoor.Thetatic.Lnof
YandexTrojan.Syndicasec!ZzYgfDkQ4+A
eGambitGeneric.Malware
FortinetW32/Syndicasec.C!tr
AVGWin32:Thetatic-A [Spy]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Win32/Trojan.Spy.40e

How to remove Backdoor:Win32/Weemurl.B!dha?

Backdoor:Win32/Weemurl.B!dha removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment