Trojan

What is “Trojan:Win32/Dridex.OL!MTB”?

Malware Removal

The Trojan:Win32/Dridex.OL!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Dridex.OL!MTB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.

How to determine Trojan:Win32/Dridex.OL!MTB?


File Info:

crc32: 6F1B2E8F
md5: 9e0c1e4d5d39b982460df84182d4341e
name: 9E0C1E4D5D39B982460DF84182D4341E.mlw
sha1: 0ac7685070efa0f04b769b807782997d03942f4d
sha256: db1f39bdbf0414e692226b12f0f28ef2e613a3968f8151233930b269fef84417
sha512: 3262aa5a464ac2bb51dba20fde1515fcd221cb70ffe23cce60d396dbfc65091d24942ba62c951c1415d7813a5e2f47d9f4204d901488d5ae267e587fc11669fe
ssdeep: 3072:popj6gTxmzaCEH8nFb369t9EtpiU7FZEz57GEYd4ntfrOulzQh:upjtUzy8nF8YN73Ez57Gz4VyWzQ
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2000 - 2010 Avira GmbH. All rights reserved.
InternalName: Lffxrhrqunsqt Ieadh
FileVersion: 23.60.77.25
CompanyName: Avira GmbH
PrivateBuild:
LegalTrademarks: AntiVirxae is a registered trademark of Avira GmbH, Germany.
Comments:
ProductName: LffxRhr Unsqtei
SpecialBuild:
ProductVersion: 23.60.77.25
FileDescription: Configuration Panel
OriginalFilename: lffxrhrq.exe
Translation: 0x0800 0x04b0

Trojan:Win32/Dridex.OL!MTB also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Packed2.42993
CynetMalicious (score: 100)
ALYacSpyware.Banker.Dridex
CylanceUnsafe
CrowdStrikewin/malicious_confidence_80% (D)
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
CyrenW32/Dridex.CF.gen!Eldorado
SymantecPacked.Generic.517
ESET-NOD32Win32/Dridex.CA
APEXMalicious
AvastWin32:BankerX-gen [Trj]
ClamAVWin.Malware.Generickdz-9848444-0
BitDefenderTrojan.GenericKDZ.73894
MicroWorld-eScanTrojan.GenericKDZ.73894
Ad-AwareTrojan.GenericKDZ.73894
SophosML/PE-A + Mal/EncPk-APX
BitDefenderThetaGen:NN.ZedlaF.34670.mu8@a014QhdO
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionDrixed-FKK!9E0C1E4D5D39
FireEyeGeneric.mg.9e0c1e4d5d39b982
EmsisoftTrojan.Dridex (A)
SentinelOneStatic AI – Malicious PE
AviraTR/Crypt.Agent.vffad
MicrosoftTrojan:Win32/Dridex.OL!MTB
GridinsoftTrojan.Win32.Packed.oa!s1
ArcabitTrojan.Generic.D120A6
GDataTrojan.GenericKDZ.73894
AhnLab-V3Trojan/Win.Agent.R414023
McAfeeDrixed-FKK!9E0C1E4D5D39
MAXmalware (ai score=89)
MalwarebytesTrojan.Dridex
RisingMalware.Heuristic!ET#75% (RDMK:cmRtazqYtJD17L60V03K30Oksi1q)
YandexTrojan.Kryptik!VjHON9bdMQE
IkarusTrojan-Banker.Dridex
FortinetW32/Kryptik.HIDP!tr
AVGWin32:BankerX-gen [Trj]
Qihoo-360HEUR/QVM40.1.541F.Malware.Gen

How to remove Trojan:Win32/Dridex.OL!MTB?

Trojan:Win32/Dridex.OL!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Trojan

Trojan:Win32/Dridex.OL!MTB removal tips

Malware Removal

The Trojan:Win32/Dridex.OL!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Dridex.OL!MTB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.

How to determine Trojan:Win32/Dridex.OL!MTB?


File Info:

crc32: 334D8033
md5: fb1ca951dac7b5eebb90b8419830f2b7
name: FB1CA951DAC7B5EEBB90B8419830F2B7.mlw
sha1: 230ef400bdaecd70675c92557b2b7a0672fcae59
sha256: a6c20ec6f5ec5c2f33a850b8f0df8d6c74ad234750f1bd49af30b4df9bdab1ad
sha512: 37ef952d675e35516edb780c268e35ebad11739a957f2eeff63df6b342ff620739ff75e217283b649fdb647d6e7f174535134e450fe52144ebab407efb496c3b
ssdeep: 3072:46TM9U1Knle0BbRJd9pkJxrLxpoo/B5BvMzw9s/RmB5kA0KtNiqJWyJU0Nj8Vh:4oMy1KnllnvixrkyB7Mzw9I3KhJU0Ny
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2000 - 2010 Avira GmbH. All rights reserved.
InternalName: Lffxrhrqunsqt Ieadh
FileVersion: 23.60.77.25
CompanyName: Avira GmbH
PrivateBuild:
LegalTrademarks: AntiVirxae is a registered trademark of Avira GmbH, Germany.
Comments:
ProductName: LffxRhr Unsqtei
SpecialBuild:
ProductVersion: 23.60.77.25
FileDescription: Configuration Panel
OriginalFilename: lffxrhrq.exe
Translation: 0x0800 0x04b0

Trojan:Win32/Dridex.OL!MTB also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Packed2.42994
CynetMalicious (score: 100)
ALYacSpyware.Banker.Dridex
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
CyrenW32/Dridex.CF.gen!Eldorado
SymantecPacked.Generic.517
ESET-NOD32a variant of Win32/Kryptik.HKFN
APEXMalicious
AvastWin32:BankerX-gen [Trj]
ClamAVWin.Malware.Generickdz-9848444-0
KasperskyUDS:Trojan.Win32.Yakes
BitDefenderTrojan.Agent.FEZS
MicroWorld-eScanTrojan.Agent.FEZS
Ad-AwareTrojan.Agent.FEZS
SophosMal/Generic-R + Mal/EncPk-APX
BitDefenderThetaGen:NN.ZedlaF.34670.nu8@a8xwS!lO
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionDrixed-FKK!FB1CA951DAC7
FireEyeGeneric.mg.fb1ca951dac7b5ee
EmsisoftTrojan.Dridex (A)
SentinelOneStatic AI – Malicious PE
AviraTR/Crypt.Agent.asuhe
eGambitUnsafe.AI_Score_50%
MicrosoftTrojan:Win32/Dridex.OL!MTB
GridinsoftTrojan.Win32.Packed.oa!s1
ArcabitTrojan.Agent.FEZS
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataTrojan.Agent.FEZS
AhnLab-V3Malware/Win.Reputation.R414061
McAfeeDrixed-FKK!FB1CA951DAC7
MAXmalware (ai score=87)
RisingMalware.Heuristic!ET#76% (RDMK:cmRtazrkL+v9F1wgHxnkioSzzIB5)
IkarusTrojan-Banker.Dridex
FortinetW32/Kryptik.HIDP!tr
AVGWin32:BankerX-gen [Trj]
Qihoo-360HEUR/QVM40.1.541F.Malware.Gen

How to remove Trojan:Win32/Dridex.OL!MTB?

Trojan:Win32/Dridex.OL!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment