Malware

ML/PE-A + Mal/Koutodoor-A information

Malware Removal

The ML/PE-A + Mal/Koutodoor-A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What ML/PE-A + Mal/Koutodoor-A virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine ML/PE-A + Mal/Koutodoor-A?


File Info:

crc32: 1B44C132
md5: 06d18351f20f0b620b7a0fad3b5021fd
name: 06D18351F20F0B620B7A0FAD3B5021FD.mlw
sha1: d0233bea0149c339600caadc3a138c55332821fd
sha256: 7aa417d05fd91ad53e4d7d7773dd61080fbf0962e97085e519e99ce4d80e4844
sha512: ef33e7d9c9de160ca943d2162df187a6e6433e4d69ac04dc3a6c9c0fda7c72b9357ec3498c1f8eca34dcdbcb91837efcae483317ab908bca1ebfd8d60099e525
ssdeep: 1536:0y9bxifLt0E0ZpMDwQJPyAjCV+aaq1dkJYCd3Zq4ScePd7ncPEBXZW675v4V30cV:0wM0E0vJQJPbHaafYmZpWVZH5zbWq+
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright 2010
ProductVersion: 1, 0, 0, 0
FileDescription:
FileVersion: 1, 0, 0, 0
CompanyName:
Translation: 0x0804 0x04b0

ML/PE-A + Mal/Koutodoor-A also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Click3.27636
MicroWorld-eScanTrojan.Ransom.Cerber.1
ALYacTrojan.Ransom.Cerber.1
CylanceUnsafe
VIPRETrojan.Win32.Koutodoor.d (v)
AegisLabTrojan.Win32.Generic.l2Q5
SangforRansom.Win32.Cerber_9.se
K7AntiVirusTrojan ( 001930d11 )
BitDefenderTrojan.Ransom.Cerber.1
K7GWTrojan ( 001930d11 )
Cybereasonmalicious.1f20f0
BitDefenderThetaAI:Packer.E4F3330B21
CyrenW32/Koutodoor.A.gen!Eldorado
SymantecTrojan.Koutodoor!gen
TotalDefenseWin32/Koutodoor.D!generic
APEXMalicious
AvastWin32:Caxnet [Trj]
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojan:Win32/Koutodoor.f4500316
NANO-AntivirusTrojan.Win32.MLW.evaszt
ViRobotBackdoor.Win32.Koutodoor.Gen.B
RisingTrojan.Fedwj!1.98EA (CLOUD)
Ad-AwareTrojan.Ransom.Cerber.1
EmsisoftTrojan.Ransom.Cerber.1 (B)
ComodoTrojWare.Win32.Zybr.A@1gtnwn
F-SecureTrojan.TR/Dropper.Gen
ZillyaTrojan.Koutodoor.Win32.9510
TrendMicroBKDR_KTDOOR.SMIC
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
FireEyeGeneric.mg.06d18351f20f0b62
SophosML/PE-A + Mal/Koutodoor-A
SentinelOneStatic AI – Malicious PE
JiangminTrojan/JunkCode.Gen
eGambitGeneric.Malware
AviraTR/Dropper.Gen
MAXmalware (ai score=99)
Antiy-AVLTrojan/Win32.Unknown
MicrosoftTrojan:Win32/Koutodoor.E
ArcabitTrojan.Ransom.Cerber.1
SUPERAntiSpywareTrojan.Agent/Gen-Koutodoor
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.Ransom.Cerber.1
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Koutodoor12.Gen
Acronissuspicious
McAfeeKoutodoor.gen.g
VBA32BScope.Trojan.Click
MalwarebytesMachineLearning/Anomalous.100%
PandaBck/Koutodoor.E
ESET-NOD32a variant of Win32/Koutodoor.HL
TrendMicro-HouseCallBKDR_KTDOOR.SMIC
TencentTrojan.Win32.WNDABC.a
YandexTrojan.GenAsa!HwGm/pypIn8
IkarusTrojan.Win32.Koutodoor
MaxSecureTrojan.Malware.2588.susgen
FortinetW32/Koutodoor.D!tr.bdr
WebrootW32.Backdoor.Koutodoor
AVGWin32:Caxnet [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Trojan.Win32.Koutodoor.AR

How to remove ML/PE-A + Mal/Koutodoor-A?

ML/PE-A + Mal/Koutodoor-A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment