Malware

UDS:AdWare.Win32.Burden removal instruction

Malware Removal

The UDS:AdWare.Win32.Burden is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:AdWare.Win32.Burden virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)

How to determine UDS:AdWare.Win32.Burden?


File Info:

crc32: EDFCA390
md5: fe8bde163dd21224cba00c5f3edcd71a
name: FE8BDE163DD21224CBA00C5F3EDCD71A.mlw
sha1: 8adef1b15b28926d58a2354e192065f19c2f4bb0
sha256: 89d040ff5a8351b8fa2d9ee9a0719e1edc9bda2715ad633b07657858964895b7
sha512: cdf79925747e071b0f9ce478669fad7dad8e2b0b2003015f8740e75309f0ab021289bb5220fc02625ee8d975237ff55675286a714c0e98498ca2fcf0c37dc012
ssdeep: 49152:IkME1vRGvQneC2yBRf98brH7AVVx4TOtDqCVp/b4ceaV5lqKG:GERQvSeIRVA7WtDqCp/b43KG
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2020
InternalName: x67dax5b50x58c1x7eb8
CompanyName: x5317x4eacx5e03x4e01x8dd1x8dd1x79d1x6280x6709x9650x516cx53f8
ProductName: x67dax5b50x58c1x7eb8
ProductVersion: 4,0,2,21308
FileDescription: x67dax5b50x58c1x7eb8
OriginalFilename: Uninst.exe
Translation: 0x0804 0x04b0

UDS:AdWare.Win32.Burden also known as:

K7AntiVirusAdware ( 00570d6e1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealPUA.SoftcnappRI.S20160754
CylanceUnsafe
ZillyaAdware.Convagent.Win32.422
SangforTrojan.Win32.Save.a
AlibabaAdWare:Win32/Softcnapp.3d7
K7GWAdware ( 00570d6e1 )
Cybereasonmalicious.15b289
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Softcnapp.BG potentially unwanted
APEXMalicious
AvastWin32:Sality [Inf]
ClamAVWin.Malware.Softcnapp-6940714-0
Kasperskynot-a-virus:UDS:AdWare.Win32.Burden.gen
NANO-AntivirusVirus.Win32.Virut-Gen.bwpxnc
ViRobotAdware.Softcnapp.3091384
TencentPua:Adware.Win32.Burden.16000020
SophosGeneric PUA IK (PUA)
VIPREVirus.Win32.Sality.atbh (v)
TrendMicroPE_SALITY.ER
McAfee-GW-EditionBehavesLike.Win32.Dropper.vh
FireEyeGeneric.mg.fe8bde163dd21224
SentinelOneStatic AI – Malicious PE
AviraTR/Patched.Ren.Gen
MicrosoftTrojan:Win32/Wacatac.A!ml
Acronissuspicious
McAfeeGenericRXNY-YG!FE8BDE163DD2
VBA32BScope.Adware.Burden
MalwarebytesPUP.Optional.ChinAd
TrendMicro-HouseCallPE_SALITY.ER
RisingTrojan.Generic@ML.100 (RDML:qaWD/lsqwLEC24VWojXt+Q)
YandexPUA.Burden!eDeuE2bVEzg
IkarusPUA.Softcnapp
MaxSecureAdware.not-a-virus.WIN32.AdWare.Burden.gen_e_192416
FortinetAdware/Softcnapp.BF
AVGWin32:Sality [Inf]
Paloaltogeneric.ml

How to remove UDS:AdWare.Win32.Burden?

UDS:AdWare.Win32.Burden removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment