Backdoor

How to remove “MemScan:Backdoor.Generic.718913”?

Malware Removal

The MemScan:Backdoor.Generic.718913 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MemScan:Backdoor.Generic.718913 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Tries to unhook or modify Windows functions monitored by Cuckoo
  • Creates a hidden or system file
  • Creates a copy of itself
  • Creates known XtremeRAT mutexes
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
voice88.zapto.org

How to determine MemScan:Backdoor.Generic.718913?


File Info:

crc32: DA54A76E
md5: a6a92b6a86f20993e56dda2a78a29d82
name: A6A92B6A86F20993E56DDA2A78A29D82.mlw
sha1: 3c31b2c563442a725af7e7c6e193bf1962652a26
sha256: 1e2dbdb6517b1f32dd56cd621d2833d16eb9214ab0abdc884c41e4bbba1ce85f
sha512: 0fd368179af99ac5e748678abf945dacef256ab6846b785af339db79f1cbfdc9ebe33bab62e898517fdc24e4c227c64fffdf87d5cef405d26ab23ba034578bbf
ssdeep: 6144:GYZeuZnVCn7+MEZD3IOtkKoK8bY7/1svXTA:reuZVe7+MyYckKd7/4DA
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

LegalCopyright: Copyright (c) 2012, Katherina Walensky
ProductVersion: 1, 0, 0, 1
FileVersion: 1, 0, 0, 1
CompanyName: Katherina Walensky
Translation: 0x0000 0x04b0

MemScan:Backdoor.Generic.718913 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0055e39b1 )
LionicTrojan.Win32.Generic.lx5x
Elasticmalicious (high confidence)
DrWebTrojan.Virtumod.11842
CynetMalicious (score: 100)
ALYacMemScan:Backdoor.Generic.718913
CylanceUnsafe
ZillyaTrojan.Sasfis.Win32.28301
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 0055e39b1 )
Cybereasonmalicious.a86f20
CyrenW32/Bifrost.AD.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.MoleboxVS.L suspicious
APEXMalicious
AvastWin32:Agent-AYWW [Trj]
ClamAVWin.Spyware.87637-2
KasperskyBackdoor.Win32.Xtreme.aynt
BitDefenderMemScan:Backdoor.Generic.718913
NANO-AntivirusTrojan.Win32.Inject.sgrrz
ViRobotTrojan.Win32.A.Scar.1134808
MicroWorld-eScanMemScan:Backdoor.Generic.718913
TencentMalware.Win32.Gencirc.10b62d94
Ad-AwareMemScan:Backdoor.Generic.718913
SophosML/PE-A + Troj/SSonce-B
BitDefenderThetaGen:NN.ZexaF.34266.nC3@aO0Zltl
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.dc
FireEyeGeneric.mg.a6a92b6a86f20993
EmsisoftMemScan:Backdoor.Generic.718913 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDropper.Injector.zjr
AviraBDS/Bifrose.EB.2
Antiy-AVLTrojan/Generic.ASMalwS.2ACFFF
MicrosoftBackdoor:Win32/Xtrat.AC
ArcabitBackdoor.Generic.DAF841
GDataMemScan:Backdoor.Generic.718913
AhnLab-V3Backdoor/Win32.Buzy.R20490
McAfeeGenericRXAC-SR!A6A92B6A86F2
MAXmalware (ai score=100)
VBA32Trojan.Virtumod
MalwarebytesBackdoor.Bot.Gen
PandaTrj/CI.A
RisingTrojan.Generic@ML.100 (RDMK:4kytV+cYox7EHahRqgTLcw)
YandexTrojan.Agent!dviLoK841GU
IkarusTrojan-Dropper.Agent
MaxSecureTrojan.BackDoor-FACW
FortinetW32/Injector.DH!tr
AVGWin32:Agent-AYWW [Trj]
Paloaltogeneric.ml

How to remove MemScan:Backdoor.Generic.718913?

MemScan:Backdoor.Generic.718913 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment