Backdoor

Backdoor.Win32.Dridex.crd removal instruction

Malware Removal

The Backdoor.Win32.Dridex.crd is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Win32.Dridex.crd virus can do?

  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Unconventionial language used in binary resources: Russian
  • Anomalous binary characteristics

How to determine Backdoor.Win32.Dridex.crd?


File Info:

crc32: 24618E16
md5: 2c4ba65ebe45a97b6e43a971c6ad580b
name: 2C4BA65EBE45A97B6E43A971C6AD580B.mlw
sha1: bdb0e0889d3ec7af0398b08ece2f45ed1844d85d
sha256: 35f8bea76576f7e70d4f855f25a4235a9962d394dbefc277948b2bb75162da0d
sha512: c40b351a3eadbe35d8face1ba1f18ed9d33b7c47d70eb561be9663c35fdf29c23fa72844390b9517e30fa1aa8578cccc4f33aaf6a25e45ef911717ff7cf5d45c
ssdeep: 12288:vvjrU6CI54OzD2lg6OWEGmFBgjtLxBD0c1fLz69uJU4uYMZvqFemF1w:vLrU054cF7WxSi69GjY
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Backdoor.Win32.Dridex.crd also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
CrowdStrikewin/malicious_confidence_70% (W)
AvastFileRepMetagen [Malware]
KasperskyBackdoor.Win32.Dridex.crd
BitDefenderTrojan.GenericKD.36561072
MicroWorld-eScanTrojan.GenericKD.36561072
Ad-AwareTrojan.GenericKD.36561072
SophosML/PE-A
BitDefenderThetaGen:NN.ZedlaF.34628.7u4@aqS9!wfc
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
FireEyeGeneric.mg.2c4ba65ebe45a97b
EmsisoftTrojan.GenericKD.36561072 (B)
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Generic.D22DE0B0
ZoneAlarmBackdoor.Win32.Dridex.crd
GDataTrojan.GenericKD.36561072
AhnLab-V3Malware/Win32.Generic.C4348962
McAfeeArtemis!2C4BA65EBE45
MAXmalware (ai score=80)
VBA32BScope.Trojan.Dynamer
AVGFileRepMetagen [Malware]

How to remove Backdoor.Win32.Dridex.crd?

Backdoor.Win32.Dridex.crd removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment