Trojan

IstBar.Trojan.Downloader.DDS removal instruction

Malware Removal

The IstBar.Trojan.Downloader.DDS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IstBar.Trojan.Downloader.DDS virus can do?

  • Sample contains Overlay data
  • HTTPS urls from behavior.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

How to determine IstBar.Trojan.Downloader.DDS?


File Info:

name: 6DC7376508D5AC346C4D.mlw
path: /opt/CAPEv2/storage/binaries/224b2f5d7d803f9edeeea29f87cf9479c32b67634a5258c7540c74d5e6edaa43
crc32: ED51313E
md5: 6dc7376508d5ac346c4dbd87b73e6c15
sha1: ccf27297869c4a190e9247426457f7f36e5e6003
sha256: 224b2f5d7d803f9edeeea29f87cf9479c32b67634a5258c7540c74d5e6edaa43
sha512: 0e97aa6fa062c54519ff72ae9a8895362f297e1c18641b22acf123885f3faac7d5721df8a47d1bc80442a86dad01d96768c812cd1beaa961622a714d8c366e31
ssdeep: 768:BPVN7tqAk4nI8aMaF0Ee6Le00KbkcwH+KzBrOb5uKnoL9atL:BNN7tk8eKEtylKCH+Kzcb4Knom
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C323BF0776107AB9DCD28E701896D59617B125B11B81E133D3C4474A59BBBF3FE2A10F
sha3_384: c69d589a0e23a35fca55fea1b55a569e58f24e1b6d39cfe108d005e73a2efc23301f9395d02d154e5691b932c1b66252
ep_bytes: 558bec6aff6830414000684e32400064
timestamp: 2006-01-03 17:25:48

Version Info:

0: [No Data]

IstBar.Trojan.Downloader.DDS also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.a!c
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Istbar.DDDDEABA
FireEyeGeneric.mg.6dc7376508d5ac34
SkyhighBehavesLike.Win32.Downloader.pm
ALYacGeneric.Istbar.DDDDEABA
MalwarebytesIstBar.Trojan.Downloader.DDS
ZillyaDownloader.IstBar.Win32.2418
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan-Downloader ( 000053211 )
BitDefenderGeneric.Istbar.DDDDEABA
K7GWTrojan-Downloader ( 000053211 )
Cybereasonmalicious.7869c4
SymantecAdware.Istbar
ESET-NOD32a variant of Win32/TrojanDownloader.IstBar
APEXMalicious
ClamAVWin.Downloader.Istbar-226
KasperskyTrojan-Downloader.Win32.IstBar.gen
AlibabaTrojanDownloader:Win32/IstBar.046ff46c
NANO-AntivirusTrojan.Win32.IstBar.dqgjsm
ViRobotTrojan.Win32.Downloader.46848
RisingTrojan.DL.IstBar.GEN (CLASSIC)
SophosTroj/DwnLdr-HSM
F-SecureTrojan.TR/Downloader.Gen
DrWebTrojan.Isbar.402
VIPREGeneric.Istbar.DDDDEABA
TrendMicroTROJ_ISTBAR.EB
Trapminemalicious.high.ml.score
EmsisoftGeneric.Istbar.DDDDEABA (B)
SentinelOneStatic AI – Malicious PE
GDataGeneric.Istbar.DDDDEABA
JiangminTrojanDownloader.IstBar.lu
WebrootW32.Malware.Gen
GoogleDetected
AviraTR/Downloader.Gen
VaristW32/Istbar.gen10@dl
Antiy-AVLTrojan[Downloader]/Win32.IstBar
Kingsoftmalware.kb.a.999
XcitiumTrojWare.Win32.TrojanDownloader.IstBar.~F@f8153
ArcabitGeneric.Istbar.DDDDEABA
SUPERAntiSpywareAdware.IST/ISTBar (Slotch Bar)
ZoneAlarmTrojan-Downloader.Win32.IstBar.gen
MicrosoftTrojanDownloader:Win32/Istbar
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win.HDC.R490378
McAfeeDownloader-XZ
MAXmalware (ai score=100)
DeepInstinctMALICIOUS
VBA32BScope.TrojanDownloader.Agent
Cylanceunsafe
PandaTrj/Genetic.gen
ZonerTrojan.Win32.11338
TrendMicro-HouseCallTROJ_ISTBAR.EB
TencentMalware.Win32.Gencirc.10b17b1b
IkarusTrojan-Downloader.Win32.IstBar
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Trojandownloader.E892!tr
BitDefenderThetaGen:NN.ZexaF.36792.cqX@a8wx1Noi
AVGWin32:IstBar-AU [Trj]
AvastWin32:IstBar-AU [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove IstBar.Trojan.Downloader.DDS?

IstBar.Trojan.Downloader.DDS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment