Backdoor

UDS:Backdoor.Win32.DarkKomet removal

Malware Removal

The UDS:Backdoor.Win32.DarkKomet is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:Backdoor.Win32.DarkKomet virus can do?

  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine UDS:Backdoor.Win32.DarkKomet?


File Info:

crc32: 448B3E93
md5: 96e9564254f0acc6aa656cb56ab0e94d
name: 96E9564254F0ACC6AA656CB56AB0E94D.mlw
sha1: b0d63f3ce6bb82c649cbc7a17df774acbf23477d
sha256: 1a722652518e589be34613b12d419efee2235ff0b0a37556fbb9cda5eb27b1d2
sha512: 69d05b841c558dfe8f8ad8527e8f9450e68becf50bd0d89e372d8cc8b61770bad6d3a94b22ca858829a613d8c563519d0cc92d13f918274ecacb46799e1103d8
ssdeep: 24576:4RmJkcoQricOIQxiZY1iaZzCvJtvGCeEy0KHB7pKiJdZPgiIOkuqWrZRex2BSo+8:9JZoQrbTFZY1iaZzCvJtvRG
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

CompiledScript: AutoIt v3 Script: 3, 3, 8, 1
FileVersion: 3, 3, 8, 1
FileDescription:
Translation: 0x0809 0x04b0

UDS:Backdoor.Win32.DarkKomet also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 700000111 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacAIT:Trojan.Nymeria.281
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 700000111 )
Cybereasonmalicious.254f0a
ESET-NOD32a variant of Win32/Injector.Autoit.DCM
APEXMalicious
AvastFileRepMalware
KasperskyUDS:Backdoor.Win32.DarkKomet
BitDefenderAIT:Trojan.Nymeria.281
MicroWorld-eScanAIT:Trojan.Nymeria.281
Ad-AwareAIT:Trojan.Nymeria.281
SophosMal/Generic-R + Mal/AutoIt-AI
BitDefenderThetaAI:Packer.D4727F1C16
McAfee-GW-EditionBehavesLike.Win32.AutoitDropper.wz
FireEyeGeneric.mg.96e9564254f0acc6
EmsisoftAIT:Trojan.Nymeria.281 (B)
AviraTR/Dropper.Gen
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataAIT:Trojan.Nymeria.281 (2x)
AhnLab-V3Trojan/Win.Nymeria.C4584646
McAfeeArtemis!96E9564254F0
MAXmalware (ai score=80)
VBA32Trojan.Autoit.Wirus
MaxSecureTrojan.Autoit.AZA
FortinetAutoIt/Injector.DCM!tr
AVGFileRepMalware
Qihoo-360HEUR/QVM10.1.32DF.Malware.Gen

How to remove UDS:Backdoor.Win32.DarkKomet?

UDS:Backdoor.Win32.DarkKomet removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment