Trojan

What is “Trojan:Win32/Dridex.OL!MTB”?

Malware Removal

The Trojan:Win32/Dridex.OL!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Dridex.OL!MTB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.

How to determine Trojan:Win32/Dridex.OL!MTB?


File Info:

crc32: A29A0C24
md5: 9d60309fde0e917d747b6257b9e201bc
name: 9D60309FDE0E917D747B6257B9E201BC.mlw
sha1: f3ba687bf7c65ce1e7fdea16ed5f8e06bc200930
sha256: b8ae40b715fdf68561d896d87916c84bcd909db96da129a34df3cd0f79e85702
sha512: 07170f64147a91be59837e027e79a66623c9aa6130157b991a6fb9eb2d3956a65199a3f55d869940fb593ea3813ec34464a4258523d44096d5988bd185003389
ssdeep: 3072:+opj6gTxmzaCEH8nFb369t9EtpiU7FZEz57GEYd4ntfrOulzQh:hpjtUzy8nF8YN73Ez57Gz4VyWzQ
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2000 - 2010 Avira GmbH. All rights reserved.
InternalName: Lffxrhrqunsqt Ieadh
FileVersion: 23.60.77.25
CompanyName: Avira GmbH
PrivateBuild:
LegalTrademarks: AntiVirxae is a registered trademark of Avira GmbH, Germany.
Comments:
ProductName: LffxRhr Unsqtei
SpecialBuild:
ProductVersion: 23.60.77.25
FileDescription: Configuration Panel
OriginalFilename: lffxrhrq.exe
Translation: 0x0800 0x04b0

Trojan:Win32/Dridex.OL!MTB also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Packed2.42993
ClamAVWin.Malware.Generickdz-9848444-0
McAfeeDrixed-FKK!9D60309FDE0E
CylanceUnsafe
CrowdStrikewin/malicious_confidence_90% (W)
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
CyrenW32/Dridex.CF.gen!Eldorado
SymantecPacked.Generic.517
ESET-NOD32Win32/Dridex.CA
APEXMalicious
AvastWin32:BankerX-gen [Trj]
CynetMalicious (score: 100)
KasperskyVHO:Trojan.Win32.Convagent.gen
BitDefenderTrojan.GenericKDZ.73894
MicroWorld-eScanTrojan.GenericKDZ.73894
Ad-AwareTrojan.GenericKDZ.73894
SophosML/PE-A + Mal/EncPk-APX
BitDefenderThetaGen:NN.ZedlaF.34670.mu8@aGgcb@lO
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionDrixed-FKK!9D60309FDE0E
FireEyeGeneric.mg.9d60309fde0e917d
EmsisoftTrojan.Dridex (A)
SentinelOneStatic AI – Malicious PE
AviraTR/Crypt.Agent.fadjw
MicrosoftTrojan:Win32/Dridex.OL!MTB
GridinsoftTrojan.Win32.Packed.oa!s1
GDataTrojan.GenericKDZ.73894
AhnLab-V3Trojan/Win.Agent.R414023
MAXmalware (ai score=84)
MalwarebytesTrojan.Dridex
RisingMalware.Heuristic!ET#75% (RDMK:cmRtazqYtJD17L60V03K30Oksi1q)
YandexTrojan.Kryptik!VjHON9bdMQE
IkarusTrojan-Banker.Dridex
FortinetW32/Kryptik.HIDP!tr
AVGWin32:BankerX-gen [Trj]
Qihoo-360HEUR/QVM40.1.541F.Malware.Gen

How to remove Trojan:Win32/Dridex.OL!MTB?

Trojan:Win32/Dridex.OL!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment