Malware

UDS:AdWare.Win32.Neoreklami information

Malware Removal

The UDS:AdWare.Win32.Neoreklami is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:AdWare.Win32.Neoreklami virus can do?

  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs

How to determine UDS:AdWare.Win32.Neoreklami?


File Info:

crc32: B0A4CB2F
md5: dda77c8db7c97e85659c346d64040c53
name: DDA77C8DB7C97E85659C346D64040C53.mlw
sha1: 7b986889b7ed5f3fd0c23cd0ff86be3de5a9b360
sha256: d2ef23fafcffa5757483b5eae0bf17eb037fbf2d90680f5f3c2d5e069adc5907
sha512: 1736723052e556fd9322e0778627702f8eaf166f2511bc67c13e4f0c4503e1e8ac39c51341beac7fa68aa6bc375c6df226372ab01398f0a36312c0e02f340351
ssdeep: 98304:91OhuOWxc7CAgITxA5hMN3qc4WzUNMmcg+QqTCYSql3BYnqw6jl2Pp4gYeaTP25m:91OJOc2YChC34WQNMmxMx5W9xTLm
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (c) 1999-2010 Igor Pavlov
InternalName: 7zS.sfx
FileVersion: 9.20
CompanyName: Igor Pavlov
ProductName: 7-Zip
ProductVersion: 9.20
FileDescription: 7z Setup SFX
OriginalFilename: 7zS.sfx.exe
Translation: 0x0409 0x04b0

UDS:AdWare.Win32.Neoreklami also known as:

Elasticmalicious (high confidence)
DrWebTrojan.MulDrop18.49982
CynetMalicious (score: 100)
ALYacGen:Variant.Jaik.48175
CylanceUnsafe
AlibabaAdWare:Win32/Neoreklami.961da760
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Adware.Neoreklami.LI
APEXMalicious
AvastWin32:Adware-gen [Adw]
Kasperskynot-a-virus:UDS:AdWare.Win32.Neoreklami.gen
BitDefenderGen:Variant.Jaik.48175
MicroWorld-eScanGen:Variant.Jaik.48175
TencentWin32.Adware.Neoreklami.Wvat
Ad-AwareGen:Variant.Jaik.48175
SophosGeneric PUA HL (PUA)
F-SecureHeuristic.HEUR/AGEN.1141075
BitDefenderThetaGen:NN.ZexaF.34266.@JW@ayJYLTd
TrendMicroTROJ_GEN.R002C0PKB21
McAfee-GW-EditionGenericRXQG-KA!0B9D4A658F45
FireEyeGen:Variant.Jaik.48175
EmsisoftGen:Variant.Jaik.48175 (B)
SentinelOneStatic AI – Malicious SFX
JiangminAdWare.Neoreklami.gzq
AviraHEUR/AGEN.1141075
Antiy-AVLGrayWare[AdWare]/Win32.Neoreklami
MicrosoftTrojan:Win32/Wacatac.A!ml
ArcabitTrojan.Jaik.DBC2F
GDataGen:Variant.Jaik.48175
McAfeeArtemis!DDA77C8DB7C9
MAXmalware (ai score=81)
VBA32Adware.Neoreklami
MalwarebytesAdware.Neoreklami
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002H07KB21
RisingAdware.Neoreklami!1.D0F5 (CLASSIC)
YandexPUA.Neoreklami!zxtAQKLJT8o
IkarusPUA.Neoreklami
FortinetAdware/Neoreklami
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove UDS:AdWare.Win32.Neoreklami?

UDS:AdWare.Win32.Neoreklami removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment