Adware

What is “Win32/Adware.IeDefender.NCM”?

Malware Removal

The Win32/Adware.IeDefender.NCM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Adware.IeDefender.NCM virus can do?

  • Unconventionial language used in binary resources: Ukrainian
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Adware.IeDefender.NCM?


File Info:

crc32: 342CCC52
md5: 38cb942408dd609b6361b6935e169958
name: 38CB942408DD609B6361B6935E169958.mlw
sha1: 970efeaaa3915684057885dd1393f58e66e54557
sha256: dc93c3f9336fa2475d8637ffc8febdf0a9936707c23a118d47d2bc40bbf06ea1
sha512: b1f634daa8b2cfbff7040e49c96f90cc5962380c966f13766d62922a5006477494ecee8caf6eefda1a16727d4b08fb5615e375b29b59711730edcf18d31a88de
ssdeep: 1536:eXq1O5OiP8PCkwv/Orgm/YDHj14633TOdKNg9e9n99E:Uq1O4r0HNm/Y7jm633T1K9ef
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Adware.IeDefender.NCM also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanAdware.GenericKD.45666764
FireEyeGeneric.mg.38cb942408dd609b
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
CrowdStrikewin/malicious_confidence_80% (D)
BitDefenderAdware.GenericKD.45666764
K7GWAdware ( 005772d11 )
K7AntiVirusAdware ( 005772d11 )
CyrenW32/Downloader.VAPF-3542
SymantecML.Attribute.HighConfidence
Paloaltogeneric.ml
ClamAVWin.Downloader.27248-1
KasperskyTrojan-Downloader.Win32.Delf.kosr
AlibabaTrojanDownloader:Win32/IeDefender.d6349449
NANO-AntivirusTrojan.Win32.Delf.zijkb
RisingTrojan.DL.Win32.Delf.gbb (CLASSIC)
Ad-AwareAdware.GenericKD.45666764
EmsisoftAdware.GenericKD.45666764 (B)
ComodoApplication.Win32.Adware.IeDefender.NCM@9z7y
F-SecureTrojan.TR/Dldr.Delphi.Gen
DrWebTrojan.DownLoader.54115
ZillyaDownloader.Delf.Win32.1015
McAfee-GW-EditionBehavesLike.Win32.Infected.nm
SophosGeneric PUA JH (PUA)
IkarusTrojan-Downloader.Win32.Peregar
JiangminTrojanDownloader.Delf.igl
WebrootW32.Malware.Gen
AviraTR/Dldr.Delphi.Gen
MAXmalware (ai score=64)
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitAdware.Generic.D2B8D1CC
AegisLabTrojan.Win32.Delf.a!c
ZoneAlarmTrojan-Downloader.Win32.Delf.kosr
GDataAdware.GenericKD.45666764
CynetMalicious (score: 90)
AhnLab-V3Trojan/Win32.Xema.C74159
McAfeeArtemis!38CB942408DD
VBA32Adware.IeDefender
MalwarebytesGeneric.Malware/Suspicious
PandaGeneric Malware
ESET-NOD32Win32/Adware.IeDefender.NCM
TrendMicro-HouseCallTROJ_GEN.R002H0CB221
TencentWin32.Trojan-downloader.Delf.Lmlf
YandexTrojan.GenAsa!wT93XTCY/28
FortinetW32/Delf.HSAU!tr.dldr
BitDefenderThetaGen:NN.ZelphiF.34804.gKY@a0VH81ic
AVGWin32:Delf-JHU [Trj]
Cybereasonmalicious.aa3915
AvastWin32:Delf-JHU [Trj]
Qihoo-360Win32/Trojan.Downloader.31d

How to remove Win32/Adware.IeDefender.NCM?

Win32/Adware.IeDefender.NCM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment