Backdoor

Spatet.Backdoor.Bot.DDS information

Malware Removal

The Spatet.Backdoor.Bot.DDS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Spatet.Backdoor.Bot.DDS virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Spatet.Backdoor.Bot.DDS?


File Info:

name: A355262D37E25ACFEC7F.mlw
path: /opt/CAPEv2/storage/binaries/7771666dd44b6411669bb9f106b8748a6ca50430dfb4d46e17cd3838bf3d1ba9
crc32: 7A7E798D
md5: a355262d37e25acfec7f9a5180e5b096
sha1: 603677ab8acadb94f5fc5a55be402079369dd1ea
sha256: 7771666dd44b6411669bb9f106b8748a6ca50430dfb4d46e17cd3838bf3d1ba9
sha512: fd5cbf04dc59e05a965470aeda5373321284daab25c064bcb77ee35456e6d5432f4c8896caac7d2afd8ac92ec7c065262493eca2924f01029d2ffac2405f20b0
ssdeep: 12288:fpmcD66nBjkl43obRjkl43obO92zkPaCxHV:BmkBjaRjaO9Okl
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19BD412A6F3C4897AC26B1EFC8C19C1A4758EB9762F6E1097FBAD2B2D917C4C1651C003
sha3_384: 77ab242d0122573eb3853417a6c09dbb7c6e7e47bca9fa73361d04799ebfb2366b73ff44a1229d0bb62cc6412bcc9790
ep_bytes: cb7a8da4b76ee93e18d85be3f632903c
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Spatet.Backdoor.Bot.DDS also known as:

BkavW32.AIDetectMalware
DrWebBackDoor.Cybergate.1
MicroWorld-eScanGen:Variant.Graftor.152507
ClamAVWin.Trojan.Llac-7
FireEyeGeneric.mg.a355262d37e25acf
ALYacGen:Variant.Graftor.152507
MalwarebytesSpatet.Backdoor.Bot.DDS
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 004bcce41 )
K7GWTrojan ( 004bcce41 )
CrowdStrikewin/malicious_confidence_100% (W)
VirITTrojan.Win32.Generic.N
ElasticWindows.Trojan.CyberGate
APEXMalicious
CynetMalicious (score: 100)
BitDefenderGen:Variant.Graftor.152507
AvastWin32:Malware-gen
EmsisoftGen:Variant.Graftor.152507 (B)
BaiduWin32.Trojan.Agent.co
VIPREGen:Variant.Graftor.152507
McAfee-GW-EditionBehavesLike.Win32.Generic.hc
Trapminemalicious.high.ml.score
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
GDataWin32.Backdoor.Tagreb.N0KXMU
JiangminTrojan/Llac.kzj
Antiy-AVLTrojan[Spy]/Win32.Rebhip
XcitiumTrojWare.Win32.MalPack.~ULR@1qgdfh
ArcabitTrojan.Graftor.D253BB
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
McAfeeArtemis!A355262D37E2
MAXmalware (ai score=83)
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R03BH05DU23
RisingWorm.Rebhip!1.A338 (CLASSIC)
IkarusWorm.Win32.Rebhip
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Malware-gen
Cybereasonmalicious.d37e25
DeepInstinctMALICIOUS

How to remove Spatet.Backdoor.Bot.DDS?

Spatet.Backdoor.Bot.DDS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment