Trojan

How to remove “Trojan-Downloader.Win32.Adload.thkw”?

Malware Removal

The Trojan-Downloader.Win32.Adload.thkw is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Adload.thkw virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it

How to determine Trojan-Downloader.Win32.Adload.thkw?


File Info:

crc32: 38F76885
md5: 633adb637127bf515850ea15d5ceddd1
name: 633ADB637127BF515850EA15D5CEDDD1.mlw
sha1: 0e23ccc9c58b82955ebd4f5f9c02fbb152f5bcd2
sha256: 544f541b17884f73a23079e2cca31bed76794c317d9773012bd0dd2de8544a9f
sha512: 5c10e8dc24c617b222835277b5bf465473716ffdb5c788e45234008e32f53497084e8eb05e81d6d62f2300200f4f29220eee9d5cee638fe8b1f18278dc0b8f8b
ssdeep: 98304:20/n6EaaQxY//jNS+3V8eELbXc+2FgveVR14vnbGsRiZy5n:2kIO/5Sx3mFFVRsR0yl
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
FileVersion:
CompanyName:
Comments: This installation was built with Inno Setup.
ProductName: Corporis
ProductVersion: 9.13.17.3
FileDescription: Corporis Setup
Translation: 0x0000 0x04b0

Trojan-Downloader.Win32.Adload.thkw also known as:

K7AntiVirusTrojan ( 005850dc1 )
LionicTrojan.Win32.Adload.a!c
CynetMalicious (score: 100)
ALYacGen:Variant.Ser.Midie.2006
CylanceUnsafe
SangforTrojan.Win32.Adload.thkw
AlibabaAdWare:Win32/AdLoad.2f4de4f7
K7GWTrojan ( 005850dc1 )
CyrenW32/Agent.DBB.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32multiple detections
AvastNSIS:Downloader-ADB [Trj]
KasperskyTrojan-Downloader.Win32.Adload.thkw
BitDefenderGen:Variant.Ser.Midie.2006
MicroWorld-eScanGen:Variant.Ser.Midie.2006
Ad-AwareGen:Variant.Ser.Midie.2006
SophosDownload Assistant (PUA)
TrendMicroTROJ_GEN.R002C0WJV21
McAfee-GW-EditionBehavesLike.Win32.Dropper.wc
FireEyeGen:Variant.Ser.Midie.2006
EmsisoftGen:Variant.Ser.Midie.2006 (B)
WebrootW32.Malware.Gen
AviraTR/NSIS.Agent.gzfzk
MicrosoftTrojan:Win32/Tnega!ml
GDataWin32.Backdoor.Bodelph.GNKCYG
McAfeeArtemis!633ADB637127
MAXmalware (ai score=86)
VBA32TrojanDownloader.Adload
MalwarebytesAdware.DownloadAssistant
TrendMicro-HouseCallTROJ_GEN.R002C0WJV21
IkarusTrojan.NSIS.Agent
FortinetW32/multiple_detections
AVGNSIS:Downloader-ADB [Trj]
Paloaltogeneric.ml

How to remove Trojan-Downloader.Win32.Adload.thkw?

Trojan-Downloader.Win32.Adload.thkw removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment