Trojan

About “Trojan:Win32/Koutodoor.A” infection

Malware Removal

The Trojan:Win32/Koutodoor.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Koutodoor.A virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Trojan:Win32/Koutodoor.A?


File Info:

name: C73D66E5BF656FD93CC6.mlw
path: /opt/CAPEv2/storage/binaries/63ec307cef119ac5b36faaf22a581c3c288af01b96e7f9281c5c262fbe4e8221
crc32: 6E71FA38
md5: c73d66e5bf656fd93cc6c63d9978dba0
sha1: 5251554b4adaba763098a4d397ee61567102941b
sha256: 63ec307cef119ac5b36faaf22a581c3c288af01b96e7f9281c5c262fbe4e8221
sha512: 2d2459ba11f64ce7964cc2aedc24b73c9de808d3452be09c8ab7d4f082e286acd9cdbf394a88006987479a9c863c3f139149ef93d49cafc8192418547984df7f
ssdeep: 1536:KpUxkhRn9Qs5kogEqSRx6Cnvbh9uLEkLae2nwml7UfodLS3MhtU9dm:3WhRes5kogEqSRx6Cv1pHxVDLSktUm
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FEB39E027145C376EAEAA330669F2F33797F19210D8398CBDBD3C5A719C5A94B1AD203
sha3_384: 6415cb1ab5529a6bca6e6677d71215961efb42ba75bc23a10a3178895b222100a4d5a628dfc51551c199b74ed7a24b4d
ep_bytes: 558bec6aff685051400068404a400064
timestamp: 2009-03-08 11:01:19

Version Info:

0: [No Data]

Trojan:Win32/Koutodoor.A also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Agent.Y!c
Elasticmalicious (moderate confidence)
MicroWorld-eScanGen:Variant.Lazy.208374
ALYacGen:Variant.Lazy.208374
MalwarebytesMalware.AI.3301539476
ZillyaTrojan.Agent.Win32.3428362
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 004bcce41 )
AlibabaTrojan:Win32/Koutodoor.18b71868
K7GWTrojan ( 004bcce41 )
Cybereasonmalicious.5bf656
BaiduWin32.Rootkit.Koutodoor.a
CyrenW32/Koutodoor.S.gen!Eldorado
SymantecPacked.Generic.199
ESET-NOD32multiple detections
APEXMalicious
CynetMalicious (score: 100)
KasperskyRootkit.Win32.Agent.bkwi
BitDefenderGen:Variant.Lazy.208374
NANO-AntivirusTrojan.Win32.Agent.cawbk
AvastWin32:Koutodoor [Rtk]
TencentWin32.Rootkit.Agent.Pgil
EmsisoftGen:Variant.Lazy.208374 (B)
F-SecureTrojan.TR/Crypt.ZPACK.Gen
DrWebTrojan.DownLoad.35045
VIPREGen:Variant.Lazy.208374
TrendMicroTROJ_KTODOOR.SMF
McAfee-GW-EditionBehavesLike.Win32.Generic.cm
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.c73d66e5bf656fd9
SophosMal/Generic-S
IkarusTrojan-Downloader.Win32.RtkDL
GDataGen:Variant.Lazy.208374
JiangminTrojan/JunkCode.Gen
WebrootTrojan:Win32/Koutodoor.A
AviraTR/Crypt.ZPACK.Gen
Antiy-AVLTrojan/Win32.SGeneric
XcitiumTrojWare.Win32.TrojanDownloader.BHO.~BK@f80qx
ArcabitTrojan.Lazy.D32DF6
ZoneAlarmRootkit.Win32.Agent.bkwi
MicrosoftTrojan:Win32/Koutodoor.A
GoogleDetected
AhnLab-V3Trojan/Win32.Hmir.R2706
Acronissuspicious
McAfeegeneric!bg.ftt
MAXmalware (ai score=99)
VBA32TScope.Malware-Cryptor.SB
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_KTODOOR.SMF
RisingTrojan.Koutodoor!1.67FB (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.575954.susgen
FortinetW32/Generic_bg.HCE!tr
BitDefenderThetaGen:NN.ZexaF.36196.hmW@ayqCG4n
AVGWin32:Koutodoor [Rtk]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Koutodoor.A?

Trojan:Win32/Koutodoor.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment