Categories: Adware

Adware.SMSHoax.202 information

The Adware.SMSHoax.202 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.SMSHoax.202 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Adware.SMSHoax.202?


File Info:

crc32: A66A7C65md5: 088e3e83c45096fb994b64e95865b143name: 088E3E83C45096FB994B64E95865B143.mlwsha1: bee7607720b67f5cdfd0bf08c51127c0f75090c8sha256: 60be56e27d059a3fa860318b4620e6ea2aebd2d502402c4e342cb47f139be8a6sha512: f3738420579b91ddecd01a60d86cf56af547fe9229e8e4c05929500042712a7930508ecfe907a27ae6c6c5c425cabd5ad229069dfb4b04ad74cabafeef95802cssdeep: 24576:1UkUYd0+m2jOsi9cFlAi7EKGqo8/x5croef2//qni:1UkUY/W9cXGqbXcroef2Xtype: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Adware.SMSHoax.202 also known as:

Bkav W32.AIDetect.malware1
K7AntiVirus Trojan ( 7000001c1 )
Elastic malicious (high confidence)
DrWeb Trojan.SMSSend.3705
Cynet Malicious (score: 100)
ALYac Gen:Variant.Adware.SMSHoax.202
Cylance Unsafe
Zillya Trojan.ArchSMS.Win32.506
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_90% (W)
Alibaba Hoax:Win32/ArchSMS.1337cef7
K7GW Trojan ( 7000001c1 )
Cybereason malicious.3c4509
Cyren W32/ArchSMS.AY.gen!Eldorado
Symantec Ransom.Wannacry
ESET-NOD32 a variant of Win32/Hoax.ArchSMS.VK
APEX Malicious
Avast Win32:FakeInst-AP [Trj]
Kaspersky UDS:DangerousObject.Multi.Generic
BitDefender Gen:Variant.Adware.SMSHoax.202
NANO-Antivirus Riskware.Win32.ArchSMS.ctfca
MicroWorld-eScan Gen:Variant.Adware.SMSHoax.202
Tencent Win32.Trojan-psw.Archsms.Gcc
Ad-Aware Gen:Variant.Adware.SMSHoax.202
Sophos ML/PE-A + Mal/VMProtBad-A
Comodo ApplicUnwnt.Win32.Hoax.ArchSMS.KU@438ghg
F-Secure Trojan.TR/Crypt.CFI.Gen
BitDefenderTheta Gen:NN.ZelphiF.34688.!SW@a0A!0Mmk
VIPRE Hoax.Win32.ArchSMS (not malicious)
TrendMicro TROJ_GEN.R002C0OE621
McAfee-GW-Edition BehavesLike.Win32.Dropper.dc
FireEye Generic.mg.088e3e83c45096fb
Emsisoft Gen:Variant.Adware.SMSHoax.202 (B)
SentinelOne Static AI – Malicious PE
Jiangmin Hoax.ArchSMS.aif
Webroot W32.Malware.Gen
Avira TR/Crypt.CFI.Gen
eGambit Generic.Malware
Antiy-AVL Trojan/Win32.AGeneric
Microsoft Backdoor:Win32/Bladabindi!ml
Arcabit Trojan.Adware.SMSHoax.202
AegisLab Trojan.Win32.Generic.4!c
ZoneAlarm HEUR:Trojan.Win32.Generic
GData Gen:Variant.Adware.SMSHoax.202
McAfee Generic-FAAF!088E3E83C450
MAX malware (ai score=100)
VBA32 BScope.Trojan.Smasarch
Malwarebytes Malware.AI.1019118461
Panda Trj/Genetic.gen
TrendMicro-HouseCall TROJ_GEN.R002C0OE621
Rising Hoax.ArchSMS!8.202 (CLOUD)
Yandex Trojan.GenAsa!e58kX05axsE
Ikarus Hoax.Win32.ArchSMS
Fortinet Riskware/ArchSMS.HKTO!tr
AVG Win32:FakeInst-AP [Trj]

How to remove Adware.SMSHoax.202?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Share
Published by
Paul Valéry

Recent Posts

Should I remove “Malware.AI.3914590665”?

The Malware.AI.3914590665 is considered dangerous by lots of security experts. When this infection is active,…

38 mins ago

Trojan:Win32/Startpage.YT removal instruction

The Trojan:Win32/Startpage.YT is considered dangerous by lots of security experts. When this infection is active,…

42 mins ago

Win32/Injector.Autoit.FXP removal guide

The Win32/Injector.Autoit.FXP is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

Should I remove “Trojan.Agent.Delf.RVB”?

The Trojan.Agent.Delf.RVB is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

IL:Trojan.MSILZilla.124965 malicious file

The IL:Trojan.MSILZilla.124965 is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago

Trojan.Generic.35601204 removal

The Trojan.Generic.35601204 is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago