Malware

About “UDS:Hoax.MSIL.ScreenJoke” infection

Malware Removal

The UDS:Hoax.MSIL.ScreenJoke is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:Hoax.MSIL.ScreenJoke virus can do?

  • Unconventionial language used in binary resources: Polish
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine UDS:Hoax.MSIL.ScreenJoke?


File Info:

crc32: 57A4B0FC
md5: b5cf413c34b03159d2fb88716ad559d6
name: B5CF413C34B03159D2FB88716AD559D6.mlw
sha1: 73debd04569b6dc44b5337ef3b142eaee7dd2378
sha256: 916af86b9df1ffba62ae53b74bd6cefc15f39c83461ddfbcb01eae48d986dd19
sha512: 5d83127e6c670cc142faf7f1ab54b205fc27e47028056c8717e1a5d1523b9a8f0c8a07373e8deae229adb77ac3156fca091eda8ee4e4ae7a3b59c7400b2a68ee
ssdeep: 3072:6BtaM5EWCrATe1P5GWp1icKAArDZz4N9GhbkrNEkuCW3yJbsk8ANE7cRxoYZ2nL:EaM5zQp0yN90QEuGk3DElninKIc
type: PE32+ executable (GUI) x86-64, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: Wextract
FileVersion: 11.00.22000.1 (WinBuild.160101.0800)
CompanyName: Microsoft Corporation
ProductName: Internet Explorer
ProductVersion: 11.00.22000.1
FileDescription: Win32 Cabinet Self-Extractor
OriginalFilename: WEXTRACT.EXE .MUI
Translation: 0x0409 0x04b0

UDS:Hoax.MSIL.ScreenJoke also known as:

K7AntiVirusTrojan ( 0057a7c11 )
CynetMalicious (score: 99)
ALYacTrojan.GenericKD.47395820
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaRiskWare:MSIL/ScreenJoke.4d1331ba
K7GWTrojan ( 0057a7c11 )
Cybereasonmalicious.4569b6
SymantecTrojan.Gen.MBT
ESET-NOD32MSIL/BadJoke.WU
AvastWin64:Trojan-gen
ClamAVWin.Packed.Badjoke-9881802-0
KasperskyUDS:Hoax.MSIL.ScreenJoke.gen
BitDefenderTrojan.GenericKD.47395820
MicroWorld-eScanTrojan.GenericKD.47395820
TencentMsil.Trojan-psw.Screenjoke.Pgwt
Ad-AwareTrojan.GenericKD.47395820
SophosGeneric PUA HD (PUA)
McAfee-GW-EditionBehavesLike.Win64.Dropper.dh
FireEyeTrojan.GenericKD.47395820
EmsisoftTrojan.GenericKD.47395820 (B)
AviraTR/BadJoke.whnqq
Antiy-AVLTrojan/Generic.ASMalwS.34893AD
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataTrojan.GenericKD.47395820
McAfeeArtemis!B5CF413C34B0
MAXmalware (ai score=85)
MalwarebytesRiskWare.BadJoke
YandexTrojan.Encoder!931oizK4Ixw
FortinetMSIL/BadJoke.WU!tr
AVGWin64:Trojan-gen
Paloaltogeneric.ml

How to remove UDS:Hoax.MSIL.ScreenJoke?

UDS:Hoax.MSIL.ScreenJoke removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment