Backdoor

Win32:BackdoorX-gen [Trj] removal guide

Malware Removal

The Win32:BackdoorX-gen [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:BackdoorX-gen [Trj] virus can do?

  • Network activity detected but not expressed in API logs

How to determine Win32:BackdoorX-gen [Trj]?


File Info:

crc32: A7F6CBA3
md5: a9b8049e313159a747096e5ea5eab402
name: anyname.exe
sha1: cbf41f53a2cdbbdbfbcbea05d90478899065690a
sha256: 2ff51cd78335ad6ef6bf69b90d46d1ce57c80e68eabb0d563906a1738a12f093
sha512: 0b4fadc3a65e048f033d64058a5dadadd8ec0d1f5f58c27930a982a0437748a825767b78ca72d3bf7fa59f2e27def878224d7b4c2b02137d18e35e2771732e6b
ssdeep: 12288:RNn9YL+cSYromBgfGxUUUzohQVEdIr3J0CPPXkm:2oxF3oyuOr3J0CPP0m
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2016 - 2019
Assembly Version: 0.0.0.0
InternalName: anyname.exe
FileVersion: 8.12.16.20
CompanyName: T%j43cY}M6/prN7$
Comments: iT+5D/6qr7R*H=8s3
ProductName: Wc8!9=aAFi4+5/
ProductVersion: 8.12.16.20
FileDescription: Wc8!9=aAFi4+5/
OriginalFilename: anyname.exe

Win32:BackdoorX-gen [Trj] also known as:

MicroWorld-eScanTrojan.GenericKD.32909209
McAfeeTrojan-FRSJ!A9B8049E3131
CylanceUnsafe
SangforMalware
BitDefenderTrojan.GenericKD.32909209
K7GWTrojan ( 0055d0b61 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.Generic.D1F62799
BitDefenderThetaGen:NN.ZemsilF.33558.8m0@ammnqIm
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.UAP
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan.MSIL.Disfa.gen
AlibabaTrojan:Win32/Kryptik.ali2000016
Endgamemalicious (high confidence)
EmsisoftTrojan.GenericKD.32909209 (B)
F-SecureTrojan.TR/Kryptik.hegvo
TrendMicroTROJ_GEN.R020C0PA420
McAfee-GW-EditionTrojan-FRSJ!A9B8049E3131
FortinetMSIL/Kryptik.UAP!tr
FireEyeGeneric.mg.a9b8049e313159a7
SophosMal/Generic-S
SentinelOneDFI – Malicious PE
AviraTR/Kryptik.hegvo
MAXmalware (ai score=89)
MicrosoftTrojanSpy:Win32/Swotter.A!bit
ZoneAlarmHEUR:Trojan.MSIL.Disfa.gen
Acronissuspicious
Ad-AwareTrojan.GenericKD.32909209
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R020C0PA420
IkarusTrojan.Inject
eGambitUnsafe.AI_Score_83%
GDataWin32.Trojan-Stealer.FormBook.NALF1Z
AVGWin32:BackdoorX-gen [Trj]
AvastWin32:BackdoorX-gen [Trj]
Qihoo-360Generic/Trojan.593

How to remove Win32:BackdoorX-gen [Trj]?

Win32:BackdoorX-gen [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment