Trojan

Trojan:Win32/Koutodoor.F removal guide

Malware Removal

The Trojan:Win32/Koutodoor.F is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Koutodoor.F virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Trojan:Win32/Koutodoor.F?


File Info:

name: 3F7AD3D5987FC9C9C4F8.mlw
path: /opt/CAPEv2/storage/binaries/bef7d843cd2973109893f56f57c99f0420251f2402617574eeb909a8e623c6b7
crc32: BE55286A
md5: 3f7ad3d5987fc9c9c4f811b541aa9e35
sha1: 81b5f206e54bccdb87d0cc462c8b3449a92f38a5
sha256: bef7d843cd2973109893f56f57c99f0420251f2402617574eeb909a8e623c6b7
sha512: a35b5dae4f9e1b920a016cb422e8a8b6ee2dc6865d3b3b7bb0a6d47fd606f14543800bbdb868d60a3bc057d8bb9d7eb7ea2ca7d7e6c5cae5e8ea8a33202fe008
ssdeep: 768:oZVZCbAEhdHWC5tp+CcpxM4+J3AU1c968aZLqrVg89:4wdkC5sM4aAUGCG1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D4E28E513065D335DADF533216972B102FBB6930546398F2CB88CA693BE6F213E23606
sha3_384: 0edd8d7abed131b428a859b319c0fd992f101b391fb325ee2b7ef5c438cfe9cc2d19069d7069d5a0d0203e239d355686
ep_bytes: 558bec83ec1853565733ff897dfce833
timestamp: 2010-05-31 02:37:55

Version Info:

CompanyName: Microsoft Corporation
FileDescription:
FileVersion: 1, 0, 0, 1
LegalCopyright: Copyright 2009
ProductVersion: 1, 0, 0, 1
Translation: 0x0804 0x04b0

Trojan:Win32/Koutodoor.F also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.l5oD
MicroWorld-eScanGen:Variant.Koutodoor.4
FireEyeGeneric.mg.3f7ad3d5987fc9c9
CAT-QuickHealTrojan.Koutodoor.E
SkyhighBehavesLike.Win32.Generic.nh
McAfeeKoutodoor.gen.o
ZillyaTrojan.Koutodoor.Win32.2122
SangforSuspicious.Win32.Save.ins
K7AntiVirusBackdoor ( 0018738c1 )
AlibabaTrojan:Win32/Koutodoor.bf09851b
K7GWBackdoor ( 0018738c1 )
VirITTrojan.Win32.Hider.DVN
SymantecHacktool.Rootkit
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Koutodoor.GK
APEXMalicious
CynetMalicious (score: 99)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Koutodoor.4
NANO-AntivirusTrojan.Win32.MLW.crtzd
AvastWin32:Caxnet [Trj]
TencentRootkit.Win32.Agent.c
SophosMal/Koutodoor-A
BaiduWin32.Rootkit.Koutodoor.a
F-SecureTrojan.TR/Rootkit.Gen
VIPREGen:Variant.Koutodoor.4
TrendMicroRTKT_KTDOOR.SMIA
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Koutodoor.4 (B)
SentinelOneStatic AI – Suspicious PE
GDataGen:Variant.Koutodoor.4
JiangminBackdoor/Koutodoor.px
GoogleDetected
AviraTR/Rootkit.Gen
Antiy-AVLTrojan/Win32.Unknown
KingsoftWin32.HeurC.KVMH008.a
XcitiumTrojWare.Win32.Zybr.B@1h4wl9
ArcabitTrojan.Koutodoor.4
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Koutodoor.F
VaristW32/Koutodoor.K.gen!Eldorado
AhnLab-V3Win-Trojan/Koutodoor4.Gen
VBA32BScope.Trojan.Koutodoor
ALYacGen:Variant.Koutodoor.4
MAXmalware (ai score=100)
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallRTKT_KTDOOR.SMIA
RisingRootKit.Win32.Undef.ctu (CLASSIC)
YandexTrojan.GenAsa!wXA5tB775+I
IkarusTrojan.Win32.Koutodoor
FortinetW32/Koutodoor.D!tr.bdr
AVGWin32:Caxnet [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Koutodoor.F?

Trojan:Win32/Koutodoor.F removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment