Malware

How to remove “Dropped:Application.Pwdump.D”?

Malware Removal

The Dropped:Application.Pwdump.D is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Dropped:Application.Pwdump.D virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Dropped:Application.Pwdump.D?


File Info:

name: 699445FF58B824FF0A09.mlw
path: /opt/CAPEv2/storage/binaries/be14ef17aef55d810f50beeddfc8f6d3872c2e70d2909005260b304927b6efce
crc32: 396FF403
md5: 699445ff58b824ff0a09e9680c291441
sha1: 97c1a51bee63b0a1ec1e35f5cc0a0c9d39532d66
sha256: be14ef17aef55d810f50beeddfc8f6d3872c2e70d2909005260b304927b6efce
sha512: 2d3c7912c5bd88c26395caba01173e05bf80cbd82a97566c1718faa694b4f504cf0b29b0d3b9cce9b0fcbc5dea9168e477ec54182e0fe563af5c4e00bd272ebb
ssdeep: 1536:KaChqQ8VnF+dleqNPOOZ2HDQcPdBEc/IXRAUGv4AY:KOPFEFlFcFucQXRAUGvbY
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E4832A13FA94D035E280C2B1193287BAAA277D3202919D43B759BF593F756D3B8B434B
sha3_384: fd0673f46d8af422b56a809a4ae60adc1726d4f9c85aabc03bc16fcfe1ef68ffc1f803c626a207405b15b08c0cc5db47
ep_bytes: 68441a4000e8eeffffff000000000000
timestamp: 2007-10-27 13:07:38

Version Info:

Translation: 0x0407 0x04b0
ProductName: Projekt1
FileVersion: 1.00
ProductVersion: 1.00
InternalName: Stub2
OriginalFilename: Stub2.exe

Dropped:Application.Pwdump.D also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Pwdump.i!c
tehtrisGeneric.Malware
MicroWorld-eScanDropped:Application.Pwdump.D
SkyhighBehavesLike.Win32.Generic.mm
McAfeeGenericR-EQP!699445FF58B8
MalwarebytesGeneric.Spyware.Stealer.DDS
SangforSuspicious.Win32.Save.vb
K7AntiVirusPassword-Stealer ( 000285511 )
AlibabaTrojanPSW:Win32/Vwealer.a9ec393a
K7GWPassword-Stealer ( 000285511 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaAI:Packer.7A6DF7A61B
VirITTrojan.Win32.Generic.TAY
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/PSW.VB.NIZ
CynetMalicious (score: 99)
APEXMalicious
ClamAVWin.Trojan.Firepass-2
KasperskyTrojan-PSW.Win32.VB.re
BitDefenderDropped:Application.Pwdump.D
NANO-AntivirusTrojan.Win32.Firefox.weywf
AvastWin32:TrojanX-gen [Trj]
RisingStealer.VB!8.78D (TFE:3:mB0JFjl4zFB)
EmsisoftDropped:Application.Pwdump.D (B)
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.PWS.Firefox.4
VIPREDropped:Application.Pwdump.D
TrendMicroHKTL_FIREPASS.D
SophosMal/VBbl-PP
SentinelOneStatic AI – Malicious PE
JiangminTrojan/PSW.VB.ckc
WebrootSystem.Monitor.Firefox.Password
AviraTR/Dropper.Gen
Antiy-AVLTrojan[PSW]/Win32.VB
Kingsoftmalware.kb.a.1000
MicrosoftTrojanSpy:Win32/Vwealer
XcitiumTrojWare.Win32.Trojan.VB.~AJI@mndet
ArcabitApplication.Pwdump.D
ViRobotTrojan.Win32.PSWVB.81920.P
ZoneAlarmTrojan-PSW.Win32.VB.re
GDataDropped:Application.Pwdump.D
VaristW32/PWS.PFRL-9237
AhnLab-V3Trojan/Win32.Xema.C50263
VBA32Malware-Cryptor.VB.gen.1
ALYacDropped:Application.Pwdump.D
Cylanceunsafe
PandaAdware/AccesMembre
TrendMicro-HouseCallHKTL_FIREPASS.D
TencentMalware.Win32.Gencirc.11506370
YandexTrojan.GenAsa!zEu+wEI6ves
IkarusVirus.Win32.Agent.UUN
MaxSecureTrojan.Malware.633925.susgen
FortinetRiskware/FirePass
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.bee63b
DeepInstinctMALICIOUS

How to remove Dropped:Application.Pwdump.D?

Dropped:Application.Pwdump.D removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment