Trojan

Trojan-Downloader.NSIS.Adload malicious file

Malware Removal

The Trojan-Downloader.NSIS.Adload is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.NSIS.Adload virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Reads data out of its own binary image
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
get.enomenalco.club
get.ntemptheav.club
a.tomx.xyz

How to determine Trojan-Downloader.NSIS.Adload?


File Info:

crc32: 7FD713D5
md5: fd44f3cbfb2e6bc7d910b20863178924
name: FD44F3CBFB2E6BC7D910B20863178924.mlw
sha1: 4ee40cf78474880851d8f88ee3b914b66f499304
sha256: ddf5466a88f1d28d129a8e5ea43f361ab50d8a1b82adfe159e6ab84ca879a1cf
sha512: 718c1edf7141f3815e56be8f6bb85ae1eea7dcba1a5048586ede3a481d6fd4d38841b32318d7bba335c018f90fba05d39ec7f92b29b876a95336eea3aba1eb8c
ssdeep: 1536:5Ge1q/3hVFllcl2ohbvtM2ZQPnWsv+8U1G:Mt3UbvtM2ZQPnWIx
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-Downloader.NSIS.Adload also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Application.Downloader.InstallMonster.2.084eyY@byDC6!fi
FireEyeGeneric.mg.fd44f3cbfb2e6bc7
CAT-QuickHealPUA.NSIS.Penzievs.A
Qihoo-360Win32/Trojan.Downloader.fb6
McAfeeAdload-FYH
ZillyaDownloader.Adload.Win32.5
AegisLabTrojan.Win32.Adload.a!c
SangforMalware
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderGen:Application.Downloader.InstallMonster.2.084eyY@byDC6!fi
K7GWTrojan-Downloader ( 005169191 )
K7AntiVirusTrojan-Downloader ( 005169191 )
CyrenW32/S-85698ca6!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastNSIS:SwBundler-A [Adw]
KasperskyHEUR:Trojan-Downloader.NSIS.Adload.gen
NANO-AntivirusTrojan.Nsis.Adload.eqxjfr
RisingTrojan.Adload!1.A18D (CLASSIC)
Ad-AwareGen:Application.Downloader.InstallMonster.2.084eyY@byDC6!fi
SophosGeneric ML PUA (PUA)
F-SecureAdware.ADWARE/Adware.Gen7
DrWebTrojan.Vittalia.12610
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R007C0PJC20
McAfee-GW-EditionBehavesLike.Win32.Adload.kh
EmsisoftGen:Application.Downloader.InstallMonster.2.084eyY@byDC6!fi (B)
SentinelOneStatic AI – Malicious PE – Downloader
AviraADWARE/Adware.Gen7
MAXmalware (ai score=76)
Antiy-AVLGrayWare[Downloader]/Win32.Adload.gen
MicrosoftSoftwareBundler:Win32/Penzievs
ArcabitApplication.Downloader.InstallMonster.2.EF69FD
SUPERAntiSpywareTrojan.Agent/Gen-Downloader
ZoneAlarmHEUR:Trojan-Downloader.NSIS.Adload.gen
GDataNSIS.Application.PUPDownloader.D
CynetMalicious (score: 100)
AhnLab-V3PUP/Win32.AdLoad.R211981
ALYacGen:Application.Downloader.InstallMonster.2.084eyY@byDC6!fi
VBA32suspected of Trojan.Downloader.gen.h
MalwarebytesMalware.AI.1859756931
PandaTrj/CI.A
ESET-NOD32NSIS/TrojanDownloader.Adload.R
TrendMicro-HouseCallTROJ_GEN.R007C0PJC20
TencentWin32.Trojan-downloader.Adload.Eequ
YandexTrojan.DL.Adload!6hAZqkZAU2Q
IkarusTrojan-Downloader.NSIS.Adload
FortinetW32/Adload.A41E!tr.dldr
AVGNSIS:SwBundler-A [Adw]
Paloaltogeneric.ml
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan-Downloader.NSIS.Adload?

Trojan-Downloader.NSIS.Adload removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment