Trojan

Should I remove “Trojan-Downloader.Win32.Adload.sxzi”?

Malware Removal

The Trojan-Downloader.Win32.Adload.sxzi is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Adload.sxzi virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Exhibits possible ransomware file modification behavior
  • Network activity detected but not expressed in API logs
  • Likely virus infection of existing system binary

How to determine Trojan-Downloader.Win32.Adload.sxzi?


File Info:

crc32: E4F9FEC9
md5: d45e87a2e70dd92df77c1ea18eb4037c
name: D45E87A2E70DD92DF77C1EA18EB4037C.mlw
sha1: 4f7565dc4d86f2d991f81da81d0f4c11b5133633
sha256: 8c19292db5761f74529219338b1387d29c4a8f2065df5f6a4995fcd3fb895d44
sha512: 65d7d3cfd1124706b68e33475594af691a238729692c381d412d4da8befd9b6c9c3f656bd6bef8ff7600b0a9367ff41b43c8f60208eabb6d2c0cff2137b43d1a
ssdeep: 98304:R1QTV1i2a9GykmumlX+ou4MMkwQglH2Hy93qoB3waaypzsuccTaiS6SrfyQLIG3V:XCRaLk+V+ukk3qoB3dbcYax1zyQLQfG
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
FileVersion:
CompanyName: EaseUS
Comments: This installation was built with Inno Setup.
ProductName: EaseUS Todo PCTrans
ProductVersion:
FileDescription: EaseUS Todo PCTrans Setup
OriginalFileName:
Translation: 0x0000 0x04b0

Trojan-Downloader.Win32.Adload.sxzi also known as:

K7AntiVirusTrojan ( 005722fe1 )
LionicTrojan.Win32.Adload.a!c
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop18.42303
CynetMalicious (score: 100)
ALYacAdware.GenericKD.47188777
CylanceUnsafe
SangforTrojan.Win32.Adload.sxzi
AlibabaAdWare:Win32/AdLoad.e8337f6a
K7GWTrojan ( 005722fe1 )
CyrenW32/Agent.DRH.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/TrojanDropper.Agent.SLC
APEXMalicious
AvastWin32:Adware-gen [Adw]
KasperskyTrojan-Downloader.Win32.Adload.sxzi
BitDefenderAdware.GenericKD.47188777
MicroWorld-eScanAdware.GenericKD.47188777
TencentWin32.Trojan-downloader.Adload.Wpte
Ad-AwareAdware.GenericKD.47188777
TrendMicroTROJ_GEN.R002C0GJI21
McAfee-GW-EditionBehavesLike.Win32.CSDImonetize.wc
FireEyeAdware.GenericKD.47188777
EmsisoftAdware.GenericKD.47188777 (B)
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1144245
MicrosoftProgram:Win32/Wacapew.C!ml
ArcabitAdware.Generic.D2D00B29
GDataWin32.Backdoor.Bodelph.HD7U2Q
AhnLab-V3Trojan/Win.Generic.C4680779
McAfeeArtemis!D45E87A2E70D
MAXmalware (ai score=63)
VBA32Trojan.Sabsik.FL
MalwarebytesAdware.DownloadAssistant
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0GJI21
IkarusBackdoor.Win32.Bodelph
FortinetW32/Adload.SXZI!tr.dldr
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Trojan-Downloader.Win32.Adload.sxzi?

Trojan-Downloader.Win32.Adload.sxzi removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment