Malware

SFX:Dropper-G [Drp] removal tips

Malware Removal

The SFX:Dropper-G [Drp] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What SFX:Dropper-G [Drp] virus can do?

  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs

How to determine SFX:Dropper-G [Drp]?


File Info:

crc32: 35719DD7
md5: ebde40e1d0143e8f58b3cdf42d3ed1d6
name: EBDE40E1D0143E8F58B3CDF42D3ED1D6.mlw
sha1: 67a55c084b8e075666b0e1a36b99982f2bab02c1
sha256: 349f271fdbca1e515aa451f42f04db798d3218e0a4dc5f94ef14030d72a8988a
sha512: 527c6a24d4960a02773ce09d43f64dc36d6c0c943dac1d9eee20a19f631c32f6fe0a2c8b51d7bfec543d7142f1cce0093d76c169ed9e89fe478fca9c2f84ed56
ssdeep: 24576:cNA3R5drXfNtgRC2v7AMC4Reg/uqjGZWiwoZFm1bnQXT:d51tg5v7Z9cgmqjY2aFmKT
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

SFX:Dropper-G [Drp] also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop9.15402
CAT-QuickHealTrojan.GenericPMF.S7276809
ALYacTrojan.GenericKD.32883134
CyrenW32/Trojan.IDTG-2058
ESET-NOD32multiple detections
ZonerTrojan.Win32.78582
APEXMalicious
AvastSFX:Dropper-G [Drp]
CynetMalicious (score: 99)
KasperskyUDS:Trojan.Win32.Generic
BitDefenderTrojan.GenericKD.32883134
NANO-AntivirusTrojan.Win32.ClipBanker.frspgq
MicroWorld-eScanTrojan.GenericKD.32883134
TencentWin32.Trojan.Generic.Aojm
Ad-AwareTrojan.GenericKD.32883134
SophosGeneric ML PUA (PUA)
ComodoMalware@#1sr54vk42rj69
BitDefenderThetaAI:Packer.BA04BC991F
FireEyeGeneric.mg.ebde40e1d0143e8f
EmsisoftTrojan.GenericKD.32883134 (B)
SentinelOneStatic AI – Malicious SFX
AviraTR/Crypt.xpagj
Antiy-AVLTrojan/Generic.ASMalwS.282B446
MicrosoftTrojan:Win32/Vigorf.A
ArcabitTrojan.Generic.D1F5C1BE
GDataTrojan.GenericKD.32883134
MAXmalware (ai score=80)
VBA32BScope.Trojan.Encoder
MalwarebytesMachineLearning/Anomalous.96%
RisingTrojan.Generic@ML.88 (RDML:hnCvoLHIdBrXgioXqQD1fw)
YandexTrojan.GenAsa!rYoSn9LWuPg
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/ClipBanker.IV!tr
AVGSFX:Dropper-G [Drp]

How to remove SFX:Dropper-G [Drp]?

SFX:Dropper-G [Drp] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment