Malware

UDS:AdWare.Win32.DownloadHelper removal tips

Malware Removal

The UDS:AdWare.Win32.DownloadHelper is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:AdWare.Win32.DownloadHelper virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine UDS:AdWare.Win32.DownloadHelper?


File Info:

crc32: 6C9A1CE8
md5: 4bbeba7d0acb8ffaec6617b57879f2e6
name: 4BBEBA7D0ACB8FFAEC6617B57879F2E6.mlw
sha1: f8242759e5f1a82b8f9c22fb948c9fa16ba5324e
sha256: 1a1536508effae881388c8bc88e9289eb4e9b4c5e3d8ab2c8c52aec16f9164c7
sha512: 57878769224ef508de47e95b520a615583f46e9b5b525faa5c8736d0063ca6804e9ea9aabf56c0b669729be08d17ec245d0269a5f6b6a2690411538d37395a42
ssdeep: 12288:a2txvhLeC7NONSdnOeRuihGgH4NnTrSBN1wXqNCsLNhaq9OmTLHS9U6h7TmKqc:a2tfeg7g2rMRNnTrSbhCaNEEOmSztyKj
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

UDS:AdWare.Win32.DownloadHelper also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0053d2701 )
LionicAdware.Win32.DownloadHelper.2!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
ZillyaAdware.DownloadHelper.Win32.736
SangforTrojan.Win32.Save.a
AlibabaAdWare:Win32/StartSurf.14cf3b43
K7GWTrojan ( 0053c7031 )
Cybereasonmalicious.9e5f1a
CyrenW32/S-6c560421!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GIYH
APEXMalicious
AvastFileRepMalware
Kasperskynot-a-virus:UDS:AdWare.Win32.DownloadHelper.gen
NANO-AntivirusRiskware.Win32.DownloadHelper.fiqsyu
TencentMalware.Win32.Gencirc.10cbd474
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34236.7qW@aGHXeTbi
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
FireEyeGeneric.mg.4bbeba7d0acb8ffa
SentinelOneStatic AI – Malicious PE
JiangminAdWare.DownloadHelper.fbt
AviraTR/Crypt.XPACK.Gen2
Antiy-AVLTrojan/Generic.ASMalwS.283C8ED
MicrosoftTrojan:Win32/Azorult!ml
Acronissuspicious
McAfeePacked-FKC!4BBEBA7D0ACB
MAXmalware (ai score=99)
VBA32BScope.Adware.DownloadHelper
MalwarebytesAdware.IStartSurf
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B33C (CLASSIC)
YandexTrojan.GenAsa!+X4DPqeJsdY
IkarusPUA.Dlhelper
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GLEW!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove UDS:AdWare.Win32.DownloadHelper?

UDS:AdWare.Win32.DownloadHelper removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment