Trojan

How to remove “Trojan:Win32/Dridex!pz”?

Malware Removal

The Trojan:Win32/Dridex!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Dridex!pz virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Trojan:Win32/Dridex!pz?


File Info:

name: B2BDA6AB2153ECD2BED5.mlw
path: /opt/CAPEv2/storage/binaries/193638c63f506b570bdcff369520f31c95997474b397b4f1d447ff576a0ba89b
crc32: B6045246
md5: b2bda6ab2153ecd2bed5ba99833fdd2f
sha1: 6b9544d9d6f4dd32cc7489d7b2a25295e6b26fcf
sha256: 193638c63f506b570bdcff369520f31c95997474b397b4f1d447ff576a0ba89b
sha512: 3ab7fad448dc55524a33f5254a0857a2995b6fa2ab918d27f29bacdb7947741ebea6fb4b8ea71689c1c785dc79202f1b9c73a35b1821d1ae04f55a3e2e068d50
ssdeep: 768:MEggqVCt75b+e3KEqcu+ixmlPwDgg0dlgLFnKQB2ah:1CL1n5LFKQBB
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T180F219253BE2F473D1A040B0325BC7E25E66B9B3D70922677BE92B5B3C34534A94E2C5
sha3_384: cdc55cb59fcf2e35108edd27ce0442dff776baf9776a9f2a8935cd404d1d89d64032f8a27e2bd2cf5ce2b8ce00858201
ep_bytes: 5589e581ec3c01000060837d0c010f85
timestamp: 2023-01-30 02:07:29

Version Info:

FileDescription: MODULE 76(001) Honda bike kline
CompanyName: MMC flasher
LegalCopyright: All rights reserved
ProductVersion: 10.001
Translation: 0x0409 0x0000

Trojan:Win32/Dridex!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Dridex.4!c
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Midie.141640
SkyhighBehavesLike.Win32.Infected.nh
McAfeeGenericRXKP-PN!B2BDA6AB2153
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Save.a
K7AntiVirusRiskware ( 00584baa1 )
AlibabaTrojan:Win32/Dridex.202d7315
K7GWRiskware ( 00584baa1 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.Midie.D22948
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Malware.Belylx-9821960-0
BitDefenderGen:Variant.Midie.141640
AvastWin32:TrojanX-gen [Trj]
SophosMal/Generic-S
F-SecureHeuristic.HEUR/AGEN.1354530
VIPREGen:Variant.Midie.141640
TrendMicroTROJ_GEN.R002C0DLR23
EmsisoftGen:Variant.Midie.141640 (B)
IkarusTrojan.Win32.Agent
VaristW32/Fuerboos.AH.gen!Eldorado
AviraHEUR/AGEN.1354530
Antiy-AVLTrojan/Win32.Dridex
Kingsoftmalware.kb.a.997
MicrosoftTrojan:Win32/Dridex!pz
GDataWin32.Trojan.PSE.10UVI4S
GoogleDetected
AhnLab-V3Malware/Win32.RL_Generic.R270117
MAXmalware (ai score=86)
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DLR23
RisingTrojan.Dridex!8.33B (TFE:5:SY7nRCeB3QN)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Agent.B7DE!tr
BitDefenderThetaAI:Packer.95C26BF21E
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Trojan:Win32/Dridex!pz?

Trojan:Win32/Dridex!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment