Trojan

TrojanDownloader:O97M/Dridex.PH!MTB information

Malware Removal

The TrojanDownloader:O97M/Dridex.PH!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:O97M/Dridex.PH!MTB virus can do?

  • The office file contains a macro
  • The office file contains a macro with suspicious strings

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine TrojanDownloader:O97M/Dridex.PH!MTB?


File Info:

crc32: 18CF784B
md5: 395de1556afb031345f37f7cd4443766
name: upload_file
sha1: 13d4d9941124254a2bd8dfb512b00bf97b03a0dc
sha256: 7d422c51b1190863d910cc11de77aa744743c5c44238e20c7bdbb56254cb31dc
sha512: 6cdc0b7ac8dbfc1425b03d8e97897cabf21a84212dff4bbe35b0258b19267bfb40ae2ad90f349d6a2f0859a5c4756fa9f3fca71ec476d8ff51c41067294ab1dd
ssdeep: 384:LelsUlM9zhoV6Jppr7UtFy25y+8/J3pVUt/t6Kh55gKGw3OrmXh35:hxOV+ppUL65/J/K5OKGvrmXD
type: Microsoft Excel 2007+

Version Info:

0: [No Data]

TrojanDownloader:O97M/Dridex.PH!MTB also known as:

McAfeeRDN/Generic Downloader.x
AegisLabTrojan.MSExcel.Dridex.4!c
BitDefenderVBA.Heur2.Dridex.5.C4096070.Gen
ArcabitVBA.Heur2.Dridex.5.C4096070.Gen
CyrenPP97M/Agent.KW.gen!Eldorado
SymantecTrojan.Gen.NPE
TrendMicro-HouseCallTrojan.W97M.DRIDEX.S
AvastOther:Malware-gen [Trj]
CynetMalicious (score: 85)
KasperskyHEUR:Trojan-Downloader.MSOffice.SLoad.gen
AlibabaTrojanDownloader:VBA/MalDoc.ali1000101
MicroWorld-eScanVBA.Heur2.Dridex.5.C4096070.Gen
RisingTrojan.Runner/VBA!1.CE64 (CLASSIC)
Ad-AwareVBA.Heur2.Dridex.5.C4096070.Gen
EmsisoftVBA.Heur2.Dridex.5.C4096070.Gen (B)
F-SecureMalware.VBA/Dldr.Agent.zljer
TrendMicroTrojan.W97M.DRIDEX.S
McAfee-GW-EditionRDN/Generic Downloader.x
FireEyeVBA.Heur2.Dridex.5.C4096070.Gen
JiangminTrojanDownloader.VBS.uv
AviraVBA/Dldr.Agent.gttph
MAXmalware (ai score=86)
Antiy-AVLTrojan/Generic.ASMacro.289F3
GridinsoftAdware.U.Downloader.oa
MicrosoftTrojanDownloader:O97M/Dridex.PH!MTB
ViRobotXLS.Z.Agent.29351
ZoneAlarmHEUR:Trojan-Downloader.MSOffice.SLoad.gen
GDataVBA.Heur2.Dridex.5.C4096070.Gen
AhnLab-V3Downloader/XLS.Agent
ALYacTrojan.Downloader.XLS.gen
ZonerProbably Heur.W97Obfuscated
ESET-NOD32VBA/TrojanDownloader.Agent.UUP
IkarusTrojan.VBA.Agent
FortinetVBA/Agent.A664!tr
AVGOther:Malware-gen [Trj]
Qihoo-360Generic/Trojan.e0d

How to remove TrojanDownloader:O97M/Dridex.PH!MTB?

TrojanDownloader:O97M/Dridex.PH!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment