Malware

NSIS:ConvertAd-R [Adw] removal guide

Malware Removal

The NSIS:ConvertAd-R [Adw] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What NSIS:ConvertAd-R [Adw] virus can do?

  • Creates RWX memory
  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine NSIS:ConvertAd-R [Adw]?


File Info:

crc32: 781F04DB
md5: ba3096485d416a9a85957814b0ea5ab8
name: BA3096485D416A9A85957814B0EA5AB8.mlw
sha1: 6f69fd2770ed01ec2f8a45d21afb93e601e7d472
sha256: 916f7f2d2d8046f551cb75e681dc782877aabff6c76e999121d7689c9e9847d0
sha512: a398841b1d24c31c1cfdc3878880063025ac3d3819d63a2403248e66f664d1b7e6181fbf2ced6a0782628542514cad39462b694101c68b5eeb9049858ccdfec6
ssdeep: 12288:fZdFxHjfp5SXpVqDTzwTsvmGjV/GXeb+c3ZsR2C/8+:fZdDSXpGwgO2/GMpJU/8+
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

NSIS:ConvertAd-R [Adw] also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacAdware.GenericKD.34975063
CylanceUnsafe
SangforPUP.Win32.ConvertAd.AKJ
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/Vopak.d9ccbf0b
Cybereasonmalicious.85d416
ESET-NOD32multiple detections
APEXMalicious
AvastNSIS:ConvertAd-R [Adw]
Kasperskynot-a-virus:AdWare.Win32.Vopak.btwx
BitDefenderAdware.GenericKD.34975063
MicroWorld-eScanAdware.GenericKD.34975063
TencentWin32.Adware.Convertad.Pfiu
Ad-AwareAdware.GenericKD.34975063
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.AdwareAdload.gc
FireEyeGeneric.mg.ba3096485d416a9a
EmsisoftAdware.GenericKD.34975063 (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.PriceGong.an
AviraADWARE/ConvertAd.Gen2
MicrosoftTrojan:Win32/Wacatac.A!ml
McAfeeArtemis!BA3096485D41
VBA32Adware.Vopak
TrendMicro-HouseCallTROJ_GEN.R002H0CJV21
FortinetAdware/ConvertAd.AKJ
AVGNSIS:ConvertAd-R [Adw]
Paloaltogeneric.ml

How to remove NSIS:ConvertAd-R [Adw]?

NSIS:ConvertAd-R [Adw] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment