Trojan

Should I remove “Trojan-Downloader.Win32.Adload.sxxx”?

Malware Removal

The Trojan-Downloader.Win32.Adload.sxxx is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Adload.sxxx virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs

How to determine Trojan-Downloader.Win32.Adload.sxxx?


File Info:

crc32: 61FAADC3
md5: 8176832cdc4dc5fb18f67786e6cd6c92
name: 8176832CDC4DC5FB18F67786E6CD6C92.mlw
sha1: d97918093284f43bb8f6d0b269c81c1bb52ce5db
sha256: 7db2c8091ecd8c3aeb2390761b42ff08df5d9c5f1f0e8151c4a295291222902f
sha512: d5c3c328ffba386d50614409a7bb25e3a42326538955c8c81a12628bc7ce5335ace7538d5bd8dc0bf35960fe44b93a0b69a5d16dde44a655d97af9685310d946
ssdeep: 196608:XCYux4ay6Ppm+VQL3HEICKUTndL5PTyXDufG:Rux7hmhkICrnLquG
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
FileVersion:
CompanyName: EaseUS
Comments: This installation was built with Inno Setup.
ProductName: EaseUS Todo PCTrans
ProductVersion:
FileDescription: EaseUS Todo PCTrans Setup
OriginalFileName:
Translation: 0x0000 0x04b0

Trojan-Downloader.Win32.Adload.sxxx also known as:

K7AntiVirusTrojan ( 005722fe1 )
LionicTrojan.Win32.Adload.a!c
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop18.42303
CynetMalicious (score: 100)
CAT-QuickHealTrojanDownloader.Adload
ALYacAdware.GenericKD.47189491
CylanceUnsafe
SangforTrojan.Win32.Adload.sxxx
AlibabaAdWare:Win32/AdLoad.d9d39bc8
K7GWTrojan ( 005722fe1 )
CyrenW32/Agent.DRH.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/TrojanDropper.Agent.SLC
APEXMalicious
AvastWin32:Adware-gen [Adw]
KasperskyTrojan-Downloader.Win32.Adload.sxxx
BitDefenderAdware.GenericKD.47189491
MicroWorld-eScanAdware.GenericKD.47189491
TencentWin32.Trojan-downloader.Adload.Dypy
Ad-AwareAdware.GenericKD.47189491
SophosGeneric PUA NJ (PUA)
TrendMicroTROJ_GEN.R002C0GJJ21
McAfee-GW-EditionBehavesLike.Win32.CSDImonetize.wc
FireEyeAdware.GenericKD.47189491
EmsisoftAdware.GenericKD.47189491 (B)
AviraHEUR/AGEN.1144245
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataWin32.Backdoor.Bodelph.HKH37H
AhnLab-V3Trojan/Win.Generic.C4680779
McAfeeArtemis!8176832CDC4D
MAXmalware (ai score=68)
VBA32Trojan.Sabsik.FL
MalwarebytesAdware.DownloadAssistant
TrendMicro-HouseCallTROJ_GEN.R002C0GJJ21
IkarusBackdoor.Win32.Bodelph
FortinetW32/Adload.SXXX!tr.dldr
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Trojan-Downloader.Win32.Adload.sxxx?

Trojan-Downloader.Win32.Adload.sxxx removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment