Spy

How to remove “Discord.Spyware.Stealer.DDS”?

Malware Removal

The Discord.Spyware.Stealer.DDS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Discord.Spyware.Stealer.DDS virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Discord.Spyware.Stealer.DDS?


File Info:

crc32: E6DFE72E
md5: 256ee33e60ca6b14616123c0bbf27c76
name: 256EE33E60CA6B14616123C0BBF27C76.mlw
sha1: 9533290a31e5753cf41330f492347d21826ad109
sha256: da663b09b1b8a3c6f7adf318b96182bf9c1346956a52825f0e51400274513073
sha512: 692eae30ff58dbddae40bd6651ee63a73c7aa3a45e4cbad1fffb0a4dc0ce1e2eaec7c4397ceeb2054be5baf2a126c0869723f1462c8f31ca9c415fbc0493a741
ssdeep: 192:J5TtDLxYcMIlIu/Ws9dXeZutFp+wq79tGCGy:BDLxY7STWs9dX2wqjFG
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 1.0.0.0
InternalName: I don't know my name!.exe
FileVersion: 1.0.0.0
ProductVersion: 1.0.0.0
FileDescription:
OriginalFilename: I don't know my name!.exe

Discord.Spyware.Stealer.DDS also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Agentus.62
FireEyeGeneric.mg.256ee33e60ca6b14
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
McAfeePWS-FCPR!256EE33E60CA
CylanceUnsafe
AegisLabTrojan.MSIL.Stealer.l!c
SangforMalware
K7AntiVirusTrojan-Downloader ( 0056ce1e1 )
BitDefenderGen:Variant.Agentus.62
K7GWTrojan-Downloader ( 0056ce1e1 )
Cybereasonmalicious.e60ca6
CyrenW32/Trojan.FRR.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
ClamAVWin.Packed.Razy-9634380-0
KasperskyHEUR:Trojan-Spy.MSIL.Stealer.gen
AlibabaTrojanPSW:MSIL/Dcstl.4193ce4d
ViRobotTrojan.Win32.Z.Tiny.10240.MI
TencentMsil.Trojan-spy.Stealer.Hqcc
Ad-AwareGen:Variant.Agentus.62
SophosMal/Dloadr-CD
ComodoMalware@#112azcm0450ta
F-SecureHeuristic.HEUR/AGEN.1139324
DrWebTrojan.DownloaderNET.81
TrendMicroTrojan.MSIL.TOKENSTEALER.SMSNQ
McAfee-GW-EditionPWS-FCPR!256EE33E60CA
EmsisoftGen:Variant.Agentus.62 (B)
SentinelOneStatic AI – Malicious PE
MaxSecureWin.MxResIcn.Heur.Gen
AviraHEUR/AGEN.1139324
MAXmalware (ai score=100)
Antiy-AVLTrojan[Spy]/MSIL.Stealer
MicrosoftPWS:MSIL/Dcstl.GD!MTB
ArcabitTrojan.Agentus.62
ZoneAlarmHEUR:Trojan-Spy.MSIL.Stealer.gen
GDataMSIL.Trojan.TokenStealer.A
CynetMalicious (score: 90)
AhnLab-V3Trojan/Win32.Tiny.C4176726
BitDefenderThetaGen:NN.ZemsilF.34804.am0@aaH!f8m
ALYacGen:Variant.Agentus.62
VBA32TScope.Trojan.MSIL
MalwarebytesDiscord.Spyware.Stealer.DDS
ESET-NOD32a variant of MSIL/TrojanDownloader.Tiny.ALU
TrendMicro-HouseCallTrojan.MSIL.TOKENSTEALER.SMSNQ
RisingSpyware.Stealer!8.3090 (TFE:C:RtBZaMVDkPR)
IkarusTrojan-Downloader.MSIL.Tiny
eGambitUnsafe.AI_Score_99%
FortinetMSIL/Tiny.AQK!tr
AVGWin32:TrojanX-gen [Trj]
CrowdStrikewin/malicious_confidence_70% (D)
Qihoo-360Win32/TrojanSpy.Generic.HwMAAQcA

How to remove Discord.Spyware.Stealer.DDS?

Discord.Spyware.Stealer.DDS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment