Adware

What is “Adware.ICLoader.CE”?

Malware Removal

The Adware.ICLoader.CE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.ICLoader.CE virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Russian
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
live.windowchannel.bid
gool.eventhammer.bid

How to determine Adware.ICLoader.CE?


File Info:

crc32: 91D0A65D
md5: 3a6053d53afd486c0f3ae99f491f4996
name: 3A6053D53AFD486C0F3AE99F491F4996.mlw
sha1: d15ddcbe8b6da275d50f7683dc6881c33951ec5b
sha256: 5f3e9f9607c07c815bf7b30a7a805e93479b95f7c1f1d5741ade07b5f03d0e1e
sha512: 48e27c4a1418e7a17ddd2569b04c5c3b24785b475ad2db90bdfd7107d980bd0e23e37f1165ffee9260d27a73f525722fea2ef059c072e822b83635cdc374ad18
ssdeep: 24576:ebJ0dSY9aFdCinKB7yY0+twRjDrKcn/1xdb2v7gsCshW:CJ0rQbhif0+tw3TWv78s
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2017
FileVersion: 1.0.0.1
OriginalFilename: Template.exe
ProductVersion: 1.0.0.7
Translation: 0x0419 0x04b0

Adware.ICLoader.CE also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00528e801 )
LionicAdware.Win32.StartSurf.2!c
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.13875
CynetMalicious (score: 100)
CAT-QuickHealPUA.IcloaderPMF.S17493241
ALYacAdware.ICLoader.CE
CylanceUnsafe
ZillyaAdware.StartSurf.Win32.30867
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 00528e801 )
Cybereasonmalicious.53afd4
CyrenW32/S-94e15fbb!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.FZVG
APEXMalicious
AvastWin32:Adware-gen [Adw]
Kasperskynot-a-virus:AdWare.Win32.StartSurf.arcz
BitDefenderAdware.ICLoader.CE
NANO-AntivirusRiskware.Win32.StartSurf.ewacuh
MicroWorld-eScanAdware.ICLoader.CE
TencentMalware.Win32.Gencirc.10b14725
Ad-AwareAdware.ICLoader.CE
SophosGeneric PUA NB (PUA)
ComodoApplication.Win32.IStartSurf.HR@7fe0b8
BitDefenderThetaGen:NN.ZexaF.34266.ID0@aq8!Xjoi
VIPREAdware.Win32.StartSurf
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.3a6053d53afd486c
EmsisoftAdware.ICLoader.CE (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.StartSurf.ajt
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Win32.TSGeneric
MicrosoftTrojan:Win32/Wacatac.A!ml
ArcabitAdware.ICLoader.CE
SUPERAntiSpywareAdware.ICLoader/Variant
GDataAdware.ICLoader.CE
AhnLab-V3Adware/Win32.StartSurf.R215842
Acronissuspicious
McAfeePacked-VV!3A6053D53AFD
MAXmalware (ai score=99)
VBA32AdWare.StartSurf
MalwarebytesAdware.IStartSurf
PandaTrj/Genetic.gen
RisingPUF.Prepscram!1.AEAF (CLASSIC)
YandexTrojan.GenAsa!wCEtqqEiEqg
IkarusAdWare.ICLoader
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.FZVG!tr
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Adware.ICLoader.CE?

Adware.ICLoader.CE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment