Malware

Downloader.Win32.YXdown.jh removal tips

Malware Removal

The Downloader.Win32.YXdown.jh is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Downloader.Win32.YXdown.jh virus can do?

  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)

How to determine Downloader.Win32.YXdown.jh?


File Info:

crc32: 14459532
md5: 6ced56721f348f26b61377ca53cffe76
name: 6CED56721F348F26B61377CA53CFFE76.mlw
sha1: dcce26d155ad4ad2bf9de9454ba15f9b5e978a49
sha256: b80d349db0bbda875201b7209664442891452d24c153dc4754a728aaba56e0e1
sha512: 1e8575c3ebce325b6ee2ea7e8c2971b262dbfa1b3e66ec8c40d9c3ce39f0791f42177df813fa9ee6e52200a0a6dce00c34353c419b778bf9874d507037cc5e63
ssdeep: 24576:iSgo/HaL1gM6dogdoF+O2mmqCtMeA55P359S1ijd:NdogdACmN59ZR
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2019 yyhp_w
InternalName: yyhp_w
FileVersion: 1, 0, 0, 3
ProductName: yyhp_w
ProductVersion: 1, 0, 0, 3
FileDescription: yyhp_w
OriginalFilename: yyhp_w.dll
Translation: 0x0804 0x04b0

Downloader.Win32.YXdown.jh also known as:

CrowdStrikewin/malicious_confidence_60% (W)
Kasperskynot-a-virus:Downloader.Win32.YXdown.jh
AlibabaDownloader:Win32/YXdown.3ac565eb
FireEyeGeneric.mg.6ced56721f348f26
ZoneAlarmnot-a-virus:Downloader.Win32.YXdown.jh
Qihoo-360Win32/Virus.Downloader.bc8

How to remove Downloader.Win32.YXdown.jh?

Downloader.Win32.YXdown.jh removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment