Trojan

Trojan-Downloader.Win32.Adload.tgss removal guide

Malware Removal

The Trojan-Downloader.Win32.Adload.tgss is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Adload.tgss virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Trojan-Downloader.Win32.Adload.tgss?


File Info:

name: 287D61873BA2FD4B0D73.mlw
path: /opt/CAPEv2/storage/binaries/a401c07cd2856ff788a9860fa0c4957fe90194db7722a5ff6d1c7f1729da5d66
crc32: C116383D
md5: 287d61873ba2fd4b0d73b46ea1a8658d
sha1: 65e081609bc8e125c6f6fb6ac4d325a11d3e4d50
sha256: a401c07cd2856ff788a9860fa0c4957fe90194db7722a5ff6d1c7f1729da5d66
sha512: 3b6141dc8bbe3b4bba2f20d830bff324af0cc2098c3d2f66e67d1d8508faf201376d979ac4bab3fdd49319706275efe9529d64cebda39be9641539dc429478f2
ssdeep: 98304:zCfV8O/mkPCuwR2nWZgI5y5E0zDXdlo7KeBYG01/EuHB3Oyl5LzdZxH/Z7H:IVakPiR2OBAGKrE7Knj1/EuHdn53RZ7H
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A2361222A293743BCC263579E485E1FD4FD65BA738E484732CF4EB8E213595A087BC64
sha3_384: e82c7599b20972a5b8cc4a6aa106e6ec521bf92d57193ce1920426667d59f87d211d9bcae7e619fe2ff580fd8c4b2e1a
ep_bytes: 558bec83c4a453565733c08945c48945
timestamp: 2012-05-29 11:51:48

Version Info:

Comments: This installation was built with Inno Setup.
CompanyName:
FileDescription: Sunt Setup
FileVersion:
LegalCopyright:
ProductName: Sunt
ProductVersion: 7.12.1.14
Translation: 0x0000 0x04b0

Trojan-Downloader.Win32.Adload.tgss also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Midie.101463
McAfeeArtemis!287D61873BA2
CylanceUnsafe
SangforTrojan.Win32.Adload.tgss
K7AntiVirusTrojan ( 00587f231 )
AlibabaAdWare:Win32/AdLoad.9df7e235
K7GWTrojan ( 00587f231 )
CyrenW32/DownloadAssist.AV.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32multiple detections
Paloaltogeneric.ml
KasperskyTrojan-Downloader.Win32.Adload.tgss
BitDefenderGen:Variant.Midie.101463
NANO-AntivirusTrojan.Win32.Adload.jgxuat
Ad-AwareGen:Variant.Midie.101463
EmsisoftGen:Variant.Midie.101463 (B)
TrendMicroTROJ_GEN.R002C0WJQ21
McAfee-GW-EditionBehavesLike.Win32.Dropper.rc
FireEyeGen:Variant.Midie.101463
SophosDownload Assistant (PUA)
GDataWin32.Backdoor.Bodelph.W2LZLL
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1145728
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
ALYacGen:Variant.Midie.101463
MAXmalware (ai score=84)
VBA32Trojan.Sabsik.FL
MalwarebytesAdware.DownloadAssistant
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0WJQ21
IkarusTrojan.NSIS.Agent
FortinetW32/Agent.CUJ!tr
AVGNSIS:Downloader-ADB [Trj]
AvastNSIS:Downloader-ADB [Trj]

How to remove Trojan-Downloader.Win32.Adload.tgss?

Trojan-Downloader.Win32.Adload.tgss removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment