Trojan

Trojan.DridexCS.S18241074 information

Malware Removal

The Trojan.DridexCS.S18241074 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.DridexCS.S18241074 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Trojan.DridexCS.S18241074?


File Info:

crc32: C7CCB986
md5: 97eb9a7ff997aeb6a1e08c893e629b52
name: 97EB9A7FF997AEB6A1E08C893E629B52.mlw
sha1: c91467e5abe57affb3dd4891d0263f05933104e4
sha256: b13d7681ca9f00cb2b3713893e3c3f93c50aeb87fd0531225fb9d17d407d8e7f
sha512: 32e2acaa308dd1f4755b81a5c7f2d14b0f787465cf8eea4aa9d937c12e178373f1f2917af9ffeffd8915b30a278eadc61d42a7c488945e38ab71139a89df7403
ssdeep: 6144:a1G3WVIOY6Bdjehj+qudd96ou/6mv5wdC:a1GmSafShjYdd96z/6cwdC
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (c) 2003-2005 Trend Micro Incorporated. All rights reserved.
InternalName: nnflaxnreh.exe
FileVersion: 8.82.4831
CompanyName: Trend Micro Incorporated
ProductName: NNFlaxnreh
ProductVersion: 8.82
FileDescription: CWShredder
OriginalFilename: nnflaxnreh.exe
Translation: 0x0409 0x04e4

Trojan.DridexCS.S18241074 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.72503
CAT-QuickHealTrojan.DridexCS.S18241074
Qihoo-360HEUR/QVM39.1.999B.Malware.Gen
ALYacSpyware.Banker.Dridex
MalwarebytesTrojan.Dridex
VIPRELooksLike.Win32.Dridex.e (v)
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005765491 )
BitDefenderTrojan.GenericKDZ.72503
K7GWTrojan ( 005765491 )
CrowdStrikewin/malicious_confidence_80% (W)
BitDefenderThetaGen:NN.ZedlaF.34590.ou8@a4kRMqii
CyrenW32/Dridex.AU.gen!Eldorado
SymantecPacked.Generic.517
APEXMalicious
AvastWin32:BankerX-gen [Trj]
ClamAVWin.Packed.Dridex-9822071-0
NANO-AntivirusTrojan.Win32.Packed2.ihhgnj
TencentMalware.Win32.Gencirc.10ce3174
Ad-AwareTrojan.GenericKDZ.72503
TACHYONTrojan/W32.Dridex.241664.C
SophosMal/EncPk-APX
F-SecureTrojan.TR/Crypt.Agent.ubsaf
DrWebTrojan.Packed2.42802
ZillyaBackdoor.Dridex.Win32.431
TrendMicroTrojanSpy.Win32.DRIDEX.SMTHB
McAfee-GW-EditionDrixed-FKD!97EB9A7FF997
EmsisoftTrojan.Crypt (A)
IkarusTrojan-Banker.Dridex
JiangminTrojan.Agentb.iqf
AviraTR/Crypt.Agent.ubsaf
Antiy-AVLTrojan/Win32.Kryptik
GridinsoftTrojan.Win32.Packed.oa!s3
ArcabitTrojan.Generic.D11B37
ZoneAlarmTrojan.Win32.Agentb.bxne
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Dridex.C4299610
Acronissuspicious
MAXmalware (ai score=84)
CylanceUnsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTrojanSpy.Win32.DRIDEX.SMTHB
RisingTrojan.Dridex!1.D160 (RDMK:cmRtazph+XySZ+9ucmRcmYBY3Qjl)
YandexTrojan.Agentb!TdSu0E1Qtpc
SentinelOneStatic AI – Malicious PE
FortinetW32/GenKryptik.EJPK!tr
AVGWin32:BankerX-gen [Trj]

How to remove Trojan.DridexCS.S18241074?

Trojan.DridexCS.S18241074 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment