Malware

Should I remove “Downloader.Win32.DownloadAsist”?

Malware Removal

The Downloader.Win32.DownloadAsist is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Downloader.Win32.DownloadAsist virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Downloader.Win32.DownloadAsist?


File Info:

crc32: 459976E9
md5: 12cc250d59d5356d40596417c5650550
name: 12CC250D59D5356D40596417C5650550.mlw
sha1: df32986e9119a97642fadf1d7d5225818f4907f1
sha256: fd750571ef50d3b71b2519275c47e73ccfd092ae7c392d741b1c3ca2d2548eb3
sha512: 749af483018facb09f2eb2b0be145a15644a174ae6fae73b2347475a7e4bf3548de05131181b01e8b49ecdb00232e47121be1a484294773aa4c695460310657c
ssdeep: 24576:V4+DTNHcWXHOpLxZaoRqikNdbmbu/jJjAxtq6Ee0iKl0rEJakW:GMTN/ujA3rrbV9jP6RJEJakW
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: (c) Download Assistant
InternalName: frostwire-5.6.9.exe
FileVersion: 3.0.0.156
CompanyName: Download Assistant
ProductName: FrostWire
ProductVersion: 3.0.0.156
FileDescription: FrostWire
OriginalFilename: frostwire-5.6.9.exe
Translation: 0x0409 0x04b0

Downloader.Win32.DownloadAsist also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Application.Bundler.DownloadAssistant.17
FireEyeGeneric.mg.12cc250d59d5356d
McAfeeGenericRXES-PH!12CC250D59D5
CylanceUnsafe
SangforMalware
K7AntiVirusAdware ( 004ccef41 )
BitDefenderGen:Variant.Application.Bundler.DownloadAssistant.17
K7GWAdware ( 004ccef41 )
Cybereasonmalicious.d59d53
CyrenW32/DownloadAssist.E.gen!Eldorado
SymantecDownloader
APEXMalicious
AvastFileRepMalware
Kasperskynot-a-virus:HEUR:Downloader.Win32.DownloadAsist.gen
AlibabaDownloader:Win32/Softcnapp.9b9ed051
NANO-AntivirusRiskware.Win32.DownloadAsist.eexjna
AegisLabTrojan.Win32.Generic.mu7x
Ad-AwareGen:Variant.Application.Bundler.DownloadAssistant.17
EmsisoftGen:Variant.Application.Bundler.DownloadAssistant.17 (B)
ComodoApplication.Win32.DownloadAssistant.AR@759qcz
DrWebTrojan.Vittalia.1474
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PAH21
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
SophosDownload Assistant (PUA)
SentinelOneStatic AI – Malicious PE – Downloader
JiangminTrojan.Heur.zy
AviraTR/Dropper.Gen
Antiy-AVLGrayWare[AdWare]/Win32.DownloadAssistant.c
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftPUA:Win32/DownloadAdmin
ArcabitTrojan.Application.Bundler.DownloadAssistant.17
SUPERAntiSpywareTrojan.Agent/Gen-Dropper
ZoneAlarmnot-a-virus:HEUR:Downloader.Win32.DownloadAsist.gen
GDataGen:Variant.Application.Bundler.DownloadAssistant.17
CynetMalicious (score: 100)
AhnLab-V3PUP/Win32.DownloadAssistant.R182995
Acronissuspicious
ALYacGen:Variant.Application.Bundler.DownloadAssistant.17
VBA32BScope.Downloader.DownloadAsist
MalwarebytesAdware.DownloadAssistant
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/DownloadAssistant.C potentially unwanted
TrendMicro-HouseCallTROJ_GEN.R002C0PAH21
RisingTrojan.Assistant!1.A3BC (CLASSIC)
YandexTrojan.GenAsa!2WJYNv6rGDw
MAXmalware (ai score=77)
FortinetRiskware/DownloadAsist
AVGFileRepMalware
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360HEUR/QVM20.1.0000.Malware.Gen

How to remove Downloader.Win32.DownloadAsist?

Downloader.Win32.DownloadAsist removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment