Trojan

Trojan-Downloader.Win32.Adload.tnyj removal instruction

Malware Removal

The Trojan-Downloader.Win32.Adload.tnyj is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Downloader.Win32.Adload.tnyj virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Trojan-Downloader.Win32.Adload.tnyj?


File Info:

name: 0F50533FBB412573D4D7.mlw
path: /opt/CAPEv2/storage/binaries/27195f50fc2cf3641ecdac7180ab266b11159b34b6ffd6d91b4bf205ded412b0
crc32: 699D0A0D
md5: 0f50533fbb412573d4d783b3da7fc154
sha1: c1fcb24fbe56c83df99f39e7d3b2af1fc00302b5
sha256: 27195f50fc2cf3641ecdac7180ab266b11159b34b6ffd6d91b4bf205ded412b0
sha512: 83065b183a3ff00cb790a6e3ee542e8e311031eec34ff95c6711183b4954255bed461ea96fc0770785c822ad367cfbba4dcb936ee7cece548ef7c2441204a18a
ssdeep: 98304:qHgYmcAjxC/yRgzT37dvuD5Ttx8JRx+D5aXa/TnPfZIran7flq+TgXhTfuR+PwGT:EmH9C/yiX3Bv0FtGRx+0E3ykAJtmR+o4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E42633B3CAEA903CC3B5A4B92D27DAD25D367A1618BC4430B1DDCC6E4F36784455B32A
sha3_384: 650c0cac74cc0cd4f41c0fabb30b6ceccc5d97d8e65e5cd14cb7c03f5f1c25b80409ac07f45084e1933498c6f1066e0f
ep_bytes: 558bec83c4cc53565733c08945f08945
timestamp: 1992-06-19 22:22:17

Version Info:

Comments: This installation was built with Inno Setup.
CompanyName:
FileDescription: Dolore Setup
FileVersion:
LegalCopyright:
Translation: 0x0409 0x04e4

Trojan-Downloader.Win32.Adload.tnyj also known as:

CylanceUnsafe
K7AntiVirusTrojan ( 005722fe1 )
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/TrojanDropper.Agent.SLC
Paloaltogeneric.ml
KasperskyTrojan-Downloader.Win32.Adload.tnyj
AlibabaAdWare:Win32/AdLoad.c1036499
McAfee-GW-EditionArtemis!Trojan
IkarusTrojan-Dropper.Win32.Agent
JiangminTrojanDownloader.Adload.aiod
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataWin32.Backdoor.Bodelph.U4WL6N
McAfeeArtemis!0F50533FBB41
MalwarebytesAdware.DownloadAssistant
TrendMicro-HouseCallTROJ_GEN.R002H0DL821
FortinetW32/Agent.SLC!tr
AVGWin32:TrojanX-gen [Trj]
AvastWin32:TrojanX-gen [Trj]

How to remove Trojan-Downloader.Win32.Adload.tnyj?

Trojan-Downloader.Win32.Adload.tnyj removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment