Worm

How to remove “Ibashade.Worm.Dropper.DDS”?

Malware Removal

The Ibashade.Worm.Dropper.DDS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ibashade.Worm.Dropper.DDS virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Ibashade.Worm.Dropper.DDS?


File Info:

name: 8B6AED61D2888D3F08A3.mlw
path: /opt/CAPEv2/storage/binaries/2afa560fa2823e3fb60292138acc65154f477da7f22b55176d55a1e3b62e6840
crc32: CA15E793
md5: 8b6aed61d2888d3f08a3d54dd69e140f
sha1: 91060794b02953aeec15fceba3100b6953500e74
sha256: 2afa560fa2823e3fb60292138acc65154f477da7f22b55176d55a1e3b62e6840
sha512: 240f61dc5f8831b6ba796a4ac564ae992cdfc51165fb5b57ba47e9522d9e4e45cf5cae8c1f41f6f23e82c57f73a644842788310b36fdaa0a43caf913d0707be4
ssdeep: 768:rEHJfnaC5xzhQEOdrSN4vOx0nph/7LAQkhBv5h9zhb7:opfv5DOWknf7LAQkhBv5h9zt7
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FF63F80EF606C1FAEC840770D14EEA7F9B267431C0759D0FEBC44E05E662DDA7A24A5A
sha3_384: a6c94fef6a0da6c671950c15da45988dd8df22f05f70c050372063b57c38f72baf7ef0b9552aba78065834bcae2bec70
ep_bytes: 00000000000000000000000000000000
timestamp: 2012-04-18 18:24:55

Version Info:

0: [No Data]

Ibashade.Worm.Dropper.DDS also known as:

LionicTrojan.Win32.GenericML.4!c
CynetMalicious (score: 100)
CAT-QuickHealTrojan.BlockerPMF.S17351719
ALYacGen:Variant.Barys.340751
Cylanceunsafe
VIPREGen:Variant.Barys.340751
SangforSuspicious.Win32.Save.a
K7AntiVirusRansomware ( 0040679b1 )
AlibabaMalware:Win32/km_2edd1.None
K7GWTrojan ( 0040679b1 )
Cybereasonmalicious.4b0295
BaiduWin32.Worm.Agent.z
CyrenW32/Drolnux.A.gen!Eldorado
SymantecTrojan Horse
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Ibashade.A
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Worm.Drolnux-6796867-0
KasperskyUDS:Trojan.Win32.GenericML.xnet
BitDefenderGen:Variant.Barys.340751
MicroWorld-eScanGen:Variant.Barys.340751
AvastWin32:WormX-gen [Wrm]
TencentTrojan.Win32.Blocker.aad
TACHYONTrojan/W32.Blocker.68608.H
EmsisoftGen:Variant.Barys.340751 (B)
F-SecureTrojan.TR/Spy.Gen
ZillyaWorm.Ibashade.Win32.1282
McAfee-GW-EditionBehavesLike.Win32.Downloader.kz
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.8b6aed61d2888d3f
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.MRB0UU
JiangminTrojan.Multi.gte
AviraTR/Spy.Gen
Antiy-AVLGrayWare/Win32.Generic
ArcabitTrojan.Barys.D5330F
ZoneAlarmUDS:Trojan.Win32.GenericML.xnet
MicrosoftWorm:Win32/Drolnux.B
GoogleDetected
AhnLab-V3Trojan/Win.Blocker.R462936
McAfeeGeneric-FAHD!8B6AED61D288
MAXmalware (ai score=88)
MalwarebytesIbashade.Worm.Dropper.DDS
PandaTrj/GdSda.A
RisingWorm.Drolnux!1.9CC3 (CLASSIC)
YandexTrojan.GenAsa!9kFN0cnOEto
IkarusWorm.Win32.Ibashade
MaxSecureTrojan-Ransom.Blocker.mgn
FortinetW32/Ibashade.A!worm
AVGWin32:WormX-gen [Wrm]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Ibashade.Worm.Dropper.DDS?

Ibashade.Worm.Dropper.DDS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment