Trojan

Trojan-Downloader.Win32.Adload.suja (file analysis)

Malware Removal

The Trojan-Downloader.Win32.Adload.suja is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Adload.suja virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs

How to determine Trojan-Downloader.Win32.Adload.suja?


File Info:

crc32: 34B5B91E
md5: 161df05d30f45b630d3a738b02d9ce3e
name: 161DF05D30F45B630D3A738B02D9CE3E.mlw
sha1: fc4a5f95402e16a255c7e530c1734e041d5998a0
sha256: 11d1275cb3aa5a591269f14499e1f3d4289466c39e8376dd5ae6ea8b2b3071eb
sha512: cada74c06b25b898113a773df1e40a8d7480e05912945253d11f5e2b601b7ca2f8f1b7e9e0bc9bd016a06b32312a2a1850ee4f3ef7b69602df79726ecad86522
ssdeep: 98304:pemcXi3NgBi8+PJiFvHhu2ZLMnJmN24W8EZVRaUl:pem/gBi8AYFvJdeJ42j8EZVRzl
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
FileVersion:
CompanyName:
Comments: This installation was built with Inno Setup.
ProductName: Nihil
ProductVersion: 2.9.18.0
FileDescription: Nihil Setup
Translation: 0x0000 0x04b0

Trojan-Downloader.Win32.Adload.suja also known as:

K7AntiVirusRiskware ( 0040eff71 )
CynetMalicious (score: 99)
CylanceUnsafe
SangforTrojan.Win32.Adload.suja
AlibabaAdWare:Win32/AdLoad.9977b4c2
K7GWRiskware ( 0040eff71 )
CyrenW32/Agent.CND.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32multiple detections
AvastNSIS:Downloader-ADB [Trj]
KasperskyTrojan-Downloader.Win32.Adload.suja
ViRobotTrojan.Win32.Z.Adload.3973421
TencentWin32.Trojan-downloader.Adload.Dvqb
SophosDownload Assistant (PUA)
TrendMicroTROJ_GEN.R002C0GIO21
McAfee-GW-EditionBehavesLike.Win32.Dropper.wc
WebrootW32.Adware.Gen
AviraHEUR/AGEN.1144248
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
GDataWin32.Backdoor.Bodelph.CVHIMA
McAfeeArtemis!161DF05D30F4
VBA32TrojanDownloader.Adload
MalwarebytesAdware.DownloadAssistant
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0GIO21
IkarusTrojan-Dropper.Win32.Agent
FortinetRiskware/Adload
AVGNSIS:Downloader-ADB [Trj]
Paloaltogeneric.ml

How to remove Trojan-Downloader.Win32.Adload.suja?

Trojan-Downloader.Win32.Adload.suja removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment