PUA

NSIS:Loderka-AJ [PUP] malicious file

Malware Removal

The NSIS:Loderka-AJ [PUP] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What NSIS:Loderka-AJ [PUP] virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine NSIS:Loderka-AJ [PUP]?


File Info:

name: 8F1DA99DC071CDD73F83.mlw
path: /opt/CAPEv2/storage/binaries/818485310d015e5dd72ec4a267f5dc2fb9194f7ff6fc71cad168591cf03e5f5e
crc32: 2A0A05D1
md5: 8f1da99dc071cdd73f836bd56603688a
sha1: 23ccf0526ca6fda80a522b5bf33e6a80200d788b
sha256: 818485310d015e5dd72ec4a267f5dc2fb9194f7ff6fc71cad168591cf03e5f5e
sha512: 87e48d526dbbf355d401bc88c9286d505b3a314d77bda2385b9651b282ac61157db273a810ac6a7cf4d98384067e85483bb0b386f20cf3caad9fe6785d16d36b
ssdeep: 24576:uMjhKDrklR7KD1LSgACd5ATeIIaaOWC5KTZeqv:NvPKBWDCwex9Odqdv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D1251203FBC34872E4640B3D9C16C184BE177D7C29E2542B2EFCDA4E1A796C65C7AA52
sha3_384: e2296757056fba4acc6a37cb73f1fd17d5485f81d74ad22d163d851f557b33efce0a6dae89dd048d3062b9b87d05e761
ep_bytes: 558bec83c4a453565733c08945c48945
timestamp: 2012-10-02 05:04:04

Version Info:

Comments: This installation was built with Inno Setup.
CompanyName: GamerPackz
FileDescription: Setup For Forager
FileVersion: 1.0.0
LegalCopyright: © Game
ProductName: Forager
ProductVersion: 4.1.9
Translation: 0x0000 0x04b0

NSIS:Loderka-AJ [PUP] also known as:

BkavW32.AIDetectMalware
LionicRiskware.Win32.Loderka.1!c
SkyhighBehavesLike.Win32.PUP.dc
McAfeeArtemis!8F1DA99DC071
Cylanceunsafe
SangforAdware.Win32.Loderka.Vj7t
K7AntiVirusTrojan ( 0056e5201 )
K7GWTrojan ( 0056e5201 )
SymantecPUA.Gen.2
Elasticmalicious (high confidence)
ESET-NOD32multiple detections
Kasperskynot-a-virus:HEUR:Downloader.Win32.GaSeta.gen
AlibabaAdWare:Win32/Loderka.70b57e43
AvastNSIS:Loderka-AJ [PUP]
TencentWin32.Risk.ADWARE.Fajl
F-SecureAdware.ADWARE/Loderka.Gen
SophosGeneric ML PUA (PUA)
IkarusPUA.Loderka
VaristW32/Loderka.A.gen!Eldorado
AviraADWARE/Loderka.Gen
GoogleDetected
AhnLab-V3Adware/Win.Generic.C5018296
VBA32TScope.Trojan.Delf
MalwarebytesGeneric.Trojan.Malicious.DDS
MaxSecureTrojan.Malware.121218.susgen
AVGNSIS:Loderka-AJ [PUP]
DeepInstinctMALICIOUS
CrowdStrikewin/grayware_confidence_100% (D)

How to remove NSIS:Loderka-AJ [PUP]?

NSIS:Loderka-AJ [PUP] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment