Trojan

Trojan-Downloader.Win32.Adload.sqeh removal

Malware Removal

The Trojan-Downloader.Win32.Adload.sqeh is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Adload.sqeh virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan-Downloader.Win32.Adload.sqeh?


File Info:

crc32: AEC79338
md5: fd1e1d2bc72e86f496a4e0f123462eb9
name: FD1E1D2BC72E86F496A4E0F123462EB9.mlw
sha1: 66bf63052f1d4c18d85f6c0d30d571953cf0413e
sha256: 39a7b3d2d7b5ce297d41c8bbc4f59a1033be422b559e3a9c352d1868907368d0
sha512: 981a348aa9e3d76ef0faac5a12e10886383d381a070633fb199da415aaf538dbf58f88930498a14ed7f3ac9c050bb912fcb547bea3057c2d7f26e47ffd557b8a
ssdeep: 98304:8Si45tVn/Riv0a5XQfxPmYP/o96tHHH1q4CDnWDkP1D:ttV/wca5XgPmY7Vq4CDcktD
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
FileVersion:
CompanyName:
Comments: This installation was built with Inno Setup.
ProductName: Nemo
ProductVersion: 7.19.16.3
FileDescription: Nemo Setup
OriginalFileName:
Translation: 0x0000 0x04b0

Trojan-Downloader.Win32.Adload.sqeh also known as:

K7AntiVirusTrojan ( 0057fc431 )
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacTrojan.GenericKD.37468674
CylanceUnsafe
SangforTrojan.Win32.Adload.sqeh
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaAdWare:Win32/AdLoad.d030b0f3
K7GWTrojan ( 0057fc431 )
CyrenW32/Agent.CQE.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Kryptik.HMIO
AvastWin32:AdwareX-gen [Adw]
KasperskyTrojan-Downloader.Win32.Adload.sqeh
BitDefenderTrojan.GenericKD.37468674
MicroWorld-eScanTrojan.GenericKD.37468674
TencentWin32.Trojan-downloader.Adload.Ednq
Ad-AwareTrojan.GenericKD.37468674
SophosTroj/Agent-BHKP
TrendMicroTROJ_GEN.R002C0RHO21
McAfee-GW-EditionBehavesLike.Win32.Dropper.rc
FireEyeTrojan.GenericKD.37468674
EmsisoftTrojan.GenericKD.37468674 (B)
AviraHEUR/AGEN.1142027
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Generic.D23BBA02
GDataWin32.Trojan.BSE.W4BXSV
McAfeeArtemis!FD1E1D2BC72E
MAXmalware (ai score=87)
VBA32TrojanDownloader.Adload
MalwarebytesAdware.DownloadAssistant
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0RHO21
YandexTrojan.DL.Adload!NhlJz7Yqr4M
IkarusTrojan.Win32.Crypt
FortinetRiskware/Adload
AVGWin32:AdwareX-gen [Adw]
Paloaltogeneric.ml

How to remove Trojan-Downloader.Win32.Adload.sqeh?

Trojan-Downloader.Win32.Adload.sqeh removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment