Trojan

TrojanDropper:Win32/Dinwod!pz malicious file

Malware Removal

The TrojanDropper:Win32/Dinwod!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDropper:Win32/Dinwod!pz virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • CAPE detected the NjRATGolden malware family

How to determine TrojanDropper:Win32/Dinwod!pz?


File Info:

name: 224F98A1B90DDBDC9FC9.mlw
path: /opt/CAPEv2/storage/binaries/ae0facdfee512e4266e788ad48cf6daf23efd28c5fc77ad3190aad0668f9f660
crc32: 00E7C501
md5: 224f98a1b90ddbdc9fc9de0a6e15a967
sha1: 2c12a9f130c808fd26eebbc98e9ee5b9a8d5a78f
sha256: ae0facdfee512e4266e788ad48cf6daf23efd28c5fc77ad3190aad0668f9f660
sha512: 02978f1aa0b17408a8243e367651a7bd7fcd5256b7a9d7de7288cd6c4858395ffd83d57c4c78210291a5f55619169987f79b5c72c7e467e723b31bd6031b1432
ssdeep: 24576:RqzIIUyC8d36kLBXlnB8j7v5Ta+hLLQ20JmXSeWwa1oWJQjk0svTS/PPsbb1hwRk:RGCOfN6X5tLLQTg20ITS/PPs/1kk
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FDA5AE22F294C877E13306755EB7F6F8A938FA621D24194B77E84F0C8FB5B416C22619
sha3_384: 4f77330e53ccafa768188615b89c703bd2952fb9f043096c536ad92160bb2df7e4b73162bce45117ff7c26fbeda4e226
ep_bytes: e88b120000e8b311000033c0c3909090
timestamp: 2015-01-27 03:56:27

Version Info:

0: [No Data]

TrojanDropper:Win32/Dinwod!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Dinwod.tppB
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.GenericKDZ.72354
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacTrojan.GenericKDZ.72354
Cylanceunsafe
ZillyaDropper.DinwodGen.Win32.1
SangforTrojan.Win32.Save.BlackMoon
K7AntiVirusTrojan ( 000aef511 )
AlibabaTrojan:Win32/Dinwod.1768
K7GWTrojan ( 005003ac1 )
Cybereasonmalicious.130c80
BaiduWin32.Trojan.Agent.acb
VirITTrojan.Win32.Inject1.DIGN
CyrenW32/BlackMoon.C.gen!Eldorado
SymantecW32.Madangel
ElasticWindows.Trojan.Njrat
APEXMalicious
ClamAVWin.Worm.Allaple-5
KasperskyTrojan-Dropper.Win32.Dinwod.acqn
BitDefenderTrojan.GenericKDZ.72354
AvastWin32:Banker-NBH [Trj]
TencentTrojan.Win32.Dinwod.ya
TACHYONTrojan/W32.GameteaSpy.Zen
SophosMal/Generic-S
DrWebTrojan.Inject1.58305
VIPRETrojan.GenericKDZ.72354
TrendMicroTrojanSpy.Win32.BANKER.SMJC
McAfee-GW-EditionBehavesLike.Win32.Dropper.vh
FireEyeTrojan.GenericKDZ.72354
EmsisoftTrojan.GenericKDZ.72354 (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.1YFXEY4
JiangminTrojanDropper.Dinwod.pc
GoogleDetected
Antiy-AVLVirus/Win32.Expiro.imp
XcitiumTrojWare.Win32.TrojanDropper.Dinwod.A@5vqtjo
ArcabitTrojan.Generic.D11AA2
ZoneAlarmTrojan-Dropper.Win32.Dinwod.acqn
MicrosoftTrojanDropper:Win32/Dinwod!pz
CynetMalicious (score: 100)
Acronissuspicious
McAfeeDropper-FVF!224F98A1B90D
MAXmalware (ai score=85)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/CI.A
TrendMicro-HouseCallTrojanSpy.Win32.BANKER.SMJC
RisingStealer.OnlineGames!1.AB1D (CLASSIC)
YandexTrojan.DR.Dinwod!yZmMClrOCf8
IkarusTrojan.Win32.Agent
MaxSecureDropper.Dinwod.acqn
FortinetW32/Banker.NBH!tr
BitDefenderThetaGen:NN.ZedlaF.36662.hu8@aa8rBveb
AVGWin32:Banker-NBH [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove TrojanDropper:Win32/Dinwod!pz?

TrojanDropper:Win32/Dinwod!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment