Malware

Troj/SalLoad-C (file analysis)

Malware Removal

The Troj/SalLoad-C is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Troj/SalLoad-C virus can do?

  • At least one process apparently crashed during execution
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Troj/SalLoad-C?


File Info:

name: BDCC9E42E0BC359DEA5E.mlw
path: /opt/CAPEv2/storage/binaries/73bf2d1e94a5aa5668b917428057549a5126ec27755060f350f47a72bcd1fede
crc32: 6E12E8A8
md5: bdcc9e42e0bc359dea5e51d20e94fbfb
sha1: 47fedcd37e3e1a4e395df7756c35e38853ee70bf
sha256: 73bf2d1e94a5aa5668b917428057549a5126ec27755060f350f47a72bcd1fede
sha512: 22303e116efc6cf33b339d24cde8251a7598a450d533472a5329a4e219a168290eed381e474f31b40b1adf003ffb8f92d981146f54b4eb53ecb056a49a3b3fd0
ssdeep: 24:eH1GSAM63EX1R9/Ebvz6fPVKPBJ3jH2j:yS3mBErz6ftKPB1H2
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F4A3E11396A56CF5C2CC113B16C7440778BD4C0577F6D5A72F90207D692136638F0D10
sha3_384: 8ac66aaf29fc365cb466f6c29adc5da6a3a99f65b4e0eacbaa0f74731aa272a1679813b44fdcb2b224d2f0b2eb7071d5
ep_bytes: 55000000005a0f6ed20f7ed381c38402
timestamp: 2010-11-05 00:25:00

Version Info:

0: [No Data]

Troj/SalLoad-C also known as:

BkavW32.MassivePifPM.Trojan
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.bdcc9e42e0bc359d
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacTrojan.SalityStub.F
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 001cddbb1 )
K7GWTrojan ( 001cddbb1 )
Cybereasonmalicious.2e0bc3
BitDefenderThetaAI:Packer.1435FA4F1D
VirITTrojan.Win32.Generic.AIP
CyrenW32/SmallTrojan.AO.gen!Eldorado
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTSPY_AGENT_CA082D2E.TOMC
KasperskyTrojan.Win32.Small.cpd
BitDefenderTrojan.SalityStub.F
SUPERAntiSpywareTrojan.Agent/Gen-Backdoor
MicroWorld-eScanTrojan.SalityStub.F
AvastWin32:Agent-APKD [Trj]
EmsisoftTrojan.SalityStub.F (B)
ComodoTrojWare.Win32.Salrenmetie.A@4w2swt
BaiduWin32.Trojan.Small.a
VIPRETrojan.Win32.Agent.abc (v)
TrendMicroTSPY_AGENT_CA082D2E.TOMC
McAfee-GW-EditionArtemis
SophosTroj/SalLoad-C
IkarusTrojan.Win32.Salrenmetie
JiangminTrojan/Small.oace.a
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=85)
Antiy-AVLTrojan/Generic.ASBOL.3762
KingsoftWin32.Troj.Small.c.(kcloud)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ViRobotTrojan.Win32.SalityNHost.99328
ZoneAlarmTrojan.Win32.Small.cpd
GDataTrojan.SalityStub.F
AhnLab-V3Trojan/Win32.Small.R10023
McAfeeArtemis!BDCC9E42E0BC
VBA32Trojan.Agentb
MalwarebytesTrojan.Agent
APEXMalicious
RisingTrojan.Win32.Fednu.cua (RDMK:cmRtazriceP6qbRYaAYzPHA7K5Vt)
YandexTrojan.GenAsa!5Tj45QuXiP0
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_73%
FortinetW32/Agent.ABC!tr
AVGWin32:Agent-APKD [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (D)
MaxSecureTrojan.W32.Small.ALJD

How to remove Troj/SalLoad-C?

Troj/SalLoad-C removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment