The Win32/UpToDown.B potentially unwanted is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.
What Win32/UpToDown.B potentially unwanted virus can do?
z.whorecord.xyz |
a.tomx.xyz |
www.uptodown.com |
ocsp.digicert.com |
gstatic.uptodown.net |
servicemap.conduit-services.com |
ct2828561.ourtoolbar.com |
www.ourtoolbar.com |
File Info:
crc32: F1D2C104md5: c342844b903f74962859ea37740f622dname: C342844B903F74962859EA37740F622D.mlwsha1: 053e0d86b29b7890912d668e343cba119ac415bcsha256: e466e0ced519193754eda815c38f632eb6a0ecd7a28fa33baa036b1914f7934dsha512: 4b613824e027a9341188172bd4566d98558f89765169ee89fe3e244c0875530b1d2a043df1a5421b6af813151040f2446b7a8feeede509a2bc4a4e2930147a60ssdeep: 12288:DnDunOLRQ3sBPBLfeZQ5NO1sPOLfez8olmviTh52:DynjsFZi1uHDmKj2type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archiveVersion Info:
0: [No Data]
Bkav | W32.AIDetect.malware1 |
Elastic | malicious (high confidence) |
Cylance | Unsafe |
VIPRE | Trojan.Win32.Generic!BT |
AegisLab | Trojan.NSIS.Xamyh.j!c |
Sangfor | Backdoor.Win32.Bladabindi.ml |
K7AntiVirus | Adware ( 004cee561 ) |
K7GW | Adware ( 004cee561 ) |
Cybereason | malicious.6b29b7 |
Symantec | PUA.UpToDown |
ESET-NOD32 | a variant of Win32/UpToDown.B potentially unwanted |
APEX | Malicious |
Avast | FileRepMalware [PUP] |
ClamAV | Win.Adware.UpToDown-1 |
Kaspersky | Trojan-Ransom.NSIS.Xamyh.ojo |
Alibaba | Ransom:Win32/Xamyh.b10d156a |
NANO-Antivirus | Riskware.Nsis.Adw.dqgtmn |
Sophos | Generic PUA AF (PUA) |
F-Secure | Program.APPL/UpToDown.Gen5 |
DrWeb | Adware.Downware.16 |
Zillya | Trojan.Onion.Win32.1314 |
TrendMicro | Ransom_Xamyh.R002C0OBB21 |
McAfee-GW-Edition | BehavesLike.Win32.PUP.gc |
Avira | APPL/UpToDown.Gen5 |
Antiy-AVL | Trojan/Win32.TSGeneric |
Microsoft | Backdoor:Win32/Bladabindi!ml |
SUPERAntiSpyware | PUP.BundleInstaller/Variant |
ZoneAlarm | Trojan-Ransom.NSIS.Xamyh.ojo |
GData | Win32.Application.UpToDown.C |
Cynet | Malicious (score: 100) |
McAfee | Artemis!C342844B903F |
VBA32 | TrojanRansom.Xamyh |
Malwarebytes | PUP.Optional.BundleInstaller |
TrendMicro-HouseCall | Ransom_Xamyh.R002C0OBB21 |
SentinelOne | Static AI – Suspicious PE |
eGambit | Unsafe.AI_Score_72% |
AVG | FileRepMalware [PUP] |
Paloalto | generic.ml |
CrowdStrike | win/malicious_confidence_100% (D) |
Qihoo-360 | Win32/Ransom.Generic.HoMASO0A |
The Malware.AI.1637728237 is considered dangerous by lots of security experts. When this infection is active,…
The Malware.AI.3853500047 is considered dangerous by lots of security experts. When this infection is active,…
The Malware.Heuristic.2013 is considered dangerous by lots of security experts. When this infection is active,…
The Application.Bundler.iStartSurf.264 is considered dangerous by lots of security experts. When this infection is active,…
The Ursu.726157 is considered dangerous by lots of security experts. When this infection is active,…
The Virus:Win32/Xpaj.B is considered dangerous by lots of security experts. When this infection is active,…