Malware

Should I remove “Troj/Bckdr-RRM”?

Malware Removal

The Troj/Bckdr-RRM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Troj/Bckdr-RRM virus can do?

  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Creates a copy of itself

How to determine Troj/Bckdr-RRM?


File Info:

name: 7B593AFA5C11D5B38621.mlw
path: /opt/CAPEv2/storage/binaries/7a47910e3c8572bec34ac7a77f9ab6d342d13f74f1df14f5dfc22b27977b3540
crc32: C4E4ED07
md5: 7b593afa5c11d5b38621db9d323e90c5
sha1: 7195ced393845de4e41c51ecab67c25a25048881
sha256: 7a47910e3c8572bec34ac7a77f9ab6d342d13f74f1df14f5dfc22b27977b3540
sha512: e4632086394aef2e7202f4781eb566f46f97a67c96ace8d500f671a0e1566c81b314877c63499178cff9c982822b243592a8ccd5e95947cd29bce47d17113157
ssdeep: 3072:QdBB+91M1LSVncSXwGm2SFQPYkkt+2NxRbB82O5pswvH5yvxA:mk91MB5UmvFQwM2NzI5pzvOA
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F7E38D2D76E1D0F2C44B14706C72D3B2BA79B631177994C3F7A40A799F606F0663A28B
sha3_384: c97a916ab00add8983cfc121cf35090eb85bc7a780aa198e876e8069a666a244c1b51c8c5e38237cb463d995511d382f
ep_bytes: e848830000e978feffffcccccccccccc
timestamp: 2014-01-22 06:38:50

Version Info:

0: [No Data]

Troj/Bckdr-RRM also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Fugrafa.79733
FireEyeGeneric.mg.7b593afa5c11d5b3
McAfeeGeneric-FAOV!7B593AFA5C11
Cylanceunsafe
VIPREGen:Variant.Fugrafa.79733
SangforTrojan.Win32.Agent.Veea
K7AntiVirusTrojan ( 0053d6461 )
K7GWTrojan ( 0053d6461 )
Cybereasonmalicious.a5c11d
BitDefenderThetaAI:Packer.025EC6471E
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent.VNC
APEXMalicious
CynetMalicious (score: 100)
NANO-AntivirusTrojan.Win32.PEF.cummcs
F-SecureTrojan.TR/Crypt.ZPACK.Gen8
DrWebTrojan.DownLoader9.39905
TrendMicroTROJ_BAYROB.SMX3
Trapminemalicious.high.ml.score
SophosTroj/Bckdr-RRM
IkarusTrojan.SuspectCRC
JiangminTrojan.Generic.helei
AviraTR/Crypt.ZPACK.Gen8
Kingsoftmalware.kb.a.995
XcitiumTrojWare.Win32.Genome.CMV@596gct
ArcabitTrojan.Fugrafa.D13775
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojanSpy:Win32/Nivdort.BO
GoogleDetected
AhnLab-V3Trojan/Win32.Infostealer.C172485
VBA32BScope.Trojan.Downloader
ALYacGen:Variant.Fugrafa.79733
MAXmalware (ai score=82)
DeepInstinctMALICIOUS
MalwarebytesGeneric.Malware/Suspicious
TrendMicro-HouseCallTROJ_BAYROB.SMX3
TencentMalware.Win32.Gencirc.115d90b6
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.VNC!tr
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (D)
alibabacloudTrojan:Win/Fugrafa

How to remove Troj/Bckdr-RRM?

Troj/Bckdr-RRM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment