Adware.Yelloader

Short bio

Adware.Yelloader is Malwarebytes’ detection name for an adware family targeting Windows systems.

Symptoms

Adware.Yelloader is believed to be a part of the bigger Fireball family that is renowned for its use of various invasive techniques, like rootkits that disable security software by labeling their certificates as “untrusted.”

Protection

Malwarebytes protects users from Adware.Yelloader by using real-time protection.

block Adware.Yelloader

Malwarebytes blocks Adware.Yelloader

Remediation

Malwarebytes can detect and remove Adware.Yelloader without further user interaction.

  1. Please download Malwarebytes to your desktop.
  2. Double-click mb3-setup-consumer-{version}.exe and follow the prompts to install the program.
  3. Then click Finish.
  4. Once the program has fully updated, select Scan Now on the Dashboard. Or select the Threat Scan from the Scan menu.
  5. If another update of the definitions is available, it will be implemented before the rest of the scanning procedure.
  6. When the scan is complete, make sure that all Threats are selected, and click Remove Selected.
  7. Restart your computer when prompted to do so.

If the infection keeps coming back, the rootkit components may need to be removed by Malwarebytes Anti-Rootkit BETA before the regular Malwarebytes scanner can remove the rest. This is usually true for users that get an error “Requested resource is in use.”

Related blog content

Fireball Chinese malware and you

How to remove adware from your PC

Adware the series, the final: tools section