Adware

Adware.ICLoader.Generic removal

Malware Removal

The Adware.ICLoader.Generic is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.ICLoader.Generic virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (2 unique times)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Queries information on disks, possibly for anti-virtualization
  • Detects the presence of Wine emulator via registry key
  • Checks the version of Bios, possibly for anti-virtualization
  • Attempts to modify proxy settings
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

static.16.249.201.195.clients.your-server.de

How to determine Adware.ICLoader.Generic?


File Info:

crc32: 83DC7E8F
md5: 4e4b2dbd0eebbd8b6feeb41f30ed3e40
name: 4E4B2DBD0EEBBD8B6FEEB41F30ED3E40.mlw
sha1: 276591db326fc733ec9fca80515877c64f3b557a
sha256: 266c5e1dead77b0eb006c14c16d2380cdd56bc1fb97c096e6bb26d35789fcda5
sha512: 26693aa2af14e4819fa654285b0419aa4cf588a3357ddf76af044a02846b23a7eb328b694c28fda896dbe006ea4a374f9e3839cca6b8cb4217a2d62ba143369f
ssdeep: 49152:zcJgCNcWUDFb9kD4J8qedbxnTYnDsPGn4J1TeMVwKFMoDC0IOQ13lu:tqc04ObxnTeoPGnfMtMAXm3
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: ZRepair.exe
FileVersion: 15.1.1233.4
ProductName: NET Components 4.54 free installer
ProductVersion: 15.1.1233.4
FileDescription: NET Components 4.54 Setup
OriginalFilename: ZRepair.exe
Translation: 0x0409 0x04b0

Adware.ICLoader.Generic also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053e8521 )
LionicTrojan.Win32.Ekstak.4!c
Elasticmalicious (high confidence)
DrWebTrojan.InstallCube.3673
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacGen:Variant.Zusy.404964
MalwarebytesAdware.ICLoader.Generic
ZillyaTrojan.Ekstak.Win32.11716
BitDefenderGen:Variant.Zusy.404964
K7GWTrojan ( 0053e8521 )
Cybereasonmalicious.d0eebb
CyrenW32/ICLoader.DM.gen!Eldorado
SymantecPUA.ICLoader
ESET-NOD32a variant of Win32/Kryptik.GKZJ
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojan:Win32/Katusha.0ea139b1
NANO-AntivirusTrojan.Win32.InstallCube.fidhip
MicroWorld-eScanGen:Variant.Zusy.404964
TencentMalware.Win32.Gencirc.10cc558d
Ad-AwareGen:Variant.Zusy.404964
ComodoApplication.Win32.ICLoader.GS@84429a
BitDefenderThetaGen:NN.ZexaF.34236.Ls0@ayjDGDoi
VIPRETrojan.Win32.Generic!BT
FireEyeGeneric.mg.4e4b2dbd0eebbd8b
SophosMal/Generic-S
JiangminAdWare.ICLoader.kmo
AviraTR/ICLoader.Gen8
Antiy-AVLTrojan/Generic.ASMalwS.2818B52
ArcabitTrojan.Zusy.D62DE4
ZoneAlarmHEUR:Packed.Win32.Katusha.gen
GDataGen:Variant.Zusy.404964
AhnLab-V3PUP/Win32.ICLoader.R237871
Acronissuspicious
VBA32BScope.Trojan.Downloader
MAXmalware (ai score=80)
RisingTrojan.Kryptik!1.AA23 (CLASSIC)
YandexTrojan.GenAsa!5qowPL1bS7g
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.GYQC!tr
PandaTrj/Genetic.gen

How to remove Adware.ICLoader.Generic?

Adware.ICLoader.Generic removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment