Trojan

How to remove “Trojan-Downloader.Win32.Adload.sxsk”?

Malware Removal

The Trojan-Downloader.Win32.Adload.sxsk is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Adload.sxsk virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Exhibits possible ransomware file modification behavior
  • Likely virus infection of existing system binary

Related domains:

jorjifornk.live

How to determine Trojan-Downloader.Win32.Adload.sxsk?


File Info:

name: 9B37F0026B34F0B62D2E.mlw
path: /opt/CAPEv2/storage/binaries/90ac44ece0156b663c591273a127adb34ffbea05cc458eabc0cfedbd5729f938
crc32: BC835929
md5: 9b37f0026b34f0b62d2e4fef8d502c51
sha1: 8b33165c77a8f3c1d33803c3248fbaa31b89ccc6
sha256: 90ac44ece0156b663c591273a127adb34ffbea05cc458eabc0cfedbd5729f938
sha512: 24061d11f991a8b7420ff472b305f33a35c74b1e966da03127e0b030acbed53d39e57f3ad7b80bafc77e1782555524c47025abef11e5c1c96fe0930d657ec118
ssdeep: 196608:eCfz6jq7CP0RHmMONMSifHLghl+mVSnORvo:Bz6jcRHW6SeHLG+JORQ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CE762227B298643EC49937354673A16068FBAA6DF413AE1677F0D48CCF765C00E3AB25
sha3_384: 2a96eb127d337fd34b7891e89c446b306370a1fbeb2088ab9cbf9d0febbf030d3a73465e4f12c02d19ecb23e5c0790ef
ep_bytes: 558bec83c4a453565733c08945c48945
timestamp: 2021-07-22 05:43:38

Version Info:

Comments: This installation was built with Inno Setup.
CompanyName: EaseUS
FileDescription: EaseUS Todo PCTrans Setup
FileVersion:
LegalCopyright:
OriginalFileName:
ProductName: EaseUS Todo PCTrans
ProductVersion:
Translation: 0x0000 0x04b0

Trojan-Downloader.Win32.Adload.sxsk also known as:

LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop18.42303
MicroWorld-eScanTrojan.GenericKD.47127727
FireEyeTrojan.GenericKD.47127727
ALYacTrojan.GenericKD.47127727
CylanceUnsafe
SangforRiskware.Win32.Agent.ky
K7AntiVirusRiskware ( 0040eff71 )
AlibabaAdWare:Win32/AdLoad.1eeb0c98
K7GWRiskware ( 0040eff71 )
CyrenW32/Agent.DRH.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/TrojanDropper.Agent.SLC
TrendMicro-HouseCallTROJ_GEN.R011C0WJ821
Paloaltogeneric.ml
KasperskyTrojan-Downloader.Win32.Adload.sxsk
BitDefenderTrojan.GenericKD.47127727
AvastWin32:Adware-gen [Adw]
TencentWin32.Trojan-downloader.Adload.Htvr
Ad-AwareTrojan.GenericKD.47127727
EmsisoftTrojan.GenericKD.47127727 (B)
TrendMicroTROJ_GEN.R011C0WJ821
McAfee-GW-EditionBehavesLike.Win32.CSDImonetize.wc
AviraHEUR/AGEN.1144245
MAXmalware (ai score=86)
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Generic.D2CF1CAF
GDataWin32.Backdoor.Bodelph.V9R251
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Generic.R420831
McAfeeArtemis!9B37F0026B34
VBA32Trojan.Sabsik.FL
MalwarebytesAdware.DownloadAssistant
APEXMalicious
IkarusBackdoor.Win32.Bodelph
FortinetRiskware/Adload
WebrootW32.Malware.Gen
AVGWin32:Adware-gen [Adw]

How to remove Trojan-Downloader.Win32.Adload.sxsk?

Trojan-Downloader.Win32.Adload.sxsk removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment