Trojan

Trojan-Dropper.Win32.Dropback.gr removal guide

Malware Removal

The Trojan-Dropper.Win32.Dropback.gr is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Dropper.Win32.Dropback.gr virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.

How to determine Trojan-Dropper.Win32.Dropback.gr?


File Info:

crc32: BB3DF59B
md5: ab4177e9412023c6e1d18b7c14429e21
name: list_document.exe
sha1: 5de12035acf6a1e27fb72114373afd9bc0e64bb8
sha256: 2aa89dacc28dfeebfa907d8714c0f8e4b88c72303e31d5f2a1b623e525db780a
sha512: 57d7ae622fc01fac643d84e1ed77946f8c8a3657998743dfc10a7c3684a8285b1be8a90d3c7dea5d638e1e5fc0f5790eb8149a1818ca5f73d0852c6ca8b19a0d
ssdeep: 49152:GlQ2dw3HMQnS0opNcCUzWZOtRcGcQu7KfxKQ3ziW/vDavuqlaTTfb:cQ2datWNrUmWod6b
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 1995-Present RasterVect Software
InternalName: Drawings
FileVersion: 6.6.6.3
CompanyName: RasterVect Software
FileDescription: Distractions Bxes Simulates
LegalTrademarks: Copyright xa9 1995-Present RasterVect Software
Comments: Distractions Bxes Simulates
ProductName: Drawings
ProductVersion: 6.6.6.3
PrivateBuild: 6.6.6.3
OriginalFilename: Drawings
Translation: 0x0409 0x04b0

Trojan-Dropper.Win32.Dropback.gr also known as:

MicroWorld-eScanTrojan.GenericKD.33534280
McAfeeArtemis!AB4177E94120
K7AntiVirusTrojan-Downloader ( 005624fe1 )
BitDefenderTrojan.GenericKD.33534280
K7GWTrojan-Downloader ( 005624fe1 )
CrowdStrikewin/malicious_confidence_60% (W)
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
GDataTrojan.GenericKD.33534280
KasperskyTrojan-Dropper.Win32.Dropback.gr
AegisLabTrojan.Multi.Generic.4!c
AvastWin32:Trojan-gen
TencentWin32.Trojan-dropper.Dropback.Lndx
Ad-AwareTrojan.GenericKD.33534280
SophosMal/Generic-S
F-SecureTrojan.TR/Dldr.Agent.rhbav
McAfee-GW-EditionBehavesLike.Win32.Dropper.vh
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.ab4177e9412023c6
EmsisoftTrojan.GenericKD.33534280 (B)
IkarusTrojan-Spy.Remcos
AviraTR/Dldr.Agent.rhbav
Antiy-AVLTrojan[Dropper]/Win32.Dropback
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D1FFB148
ZoneAlarmTrojan-Dropper.Win32.Dropback.gr
MicrosoftTrojan:Win32/Wacatac.C!ml
VBA32BScope.Trojan.Casur
ALYacTrojan.GenericKD.33534280
ESET-NOD32MSIL/TrojanDownloader.Agent.FZD
TrendMicro-HouseCallTROJ_GEN.R023H0CCC20
RisingDownloader.Agent!8.B23 (CLOUD)
FortinetW32/Agent.FZD!tr.dldr
BitDefenderThetaGen:NN.ZexaF.34100.os0@aaI2CSii
AVGWin32:Trojan-gen
PandaTrj/CI.A

How to remove Trojan-Dropper.Win32.Dropback.gr?

Trojan-Dropper.Win32.Dropback.gr removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment