Adware

Adware.Adstan malicious file

Malware Removal

The Adware.Adstan is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.Adstan virus can do?

  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs

Related domains:

wpad.local-net

How to determine Adware.Adstan?


File Info:

name: B061ABB9C245C7472EDB.mlw
path: /opt/CAPEv2/storage/binaries/ede60c81dab45e28f144f288eecd86344ecb784b34b4b8b0273e5be38a642c9d
crc32: 2F3ADD70
md5: b061abb9c245c7472edb3113d99916f3
sha1: 77bdce4bd877c7fe2f1d15e34f4a528c983457c5
sha256: ede60c81dab45e28f144f288eecd86344ecb784b34b4b8b0273e5be38a642c9d
sha512: 5f06fdb67dc3996103e2f9a81a4b79baeae3de19c647e45fab790c144bf6aac981d03d57c551329dc4ee09cee673cab0903707b54a86322d225a60b946628b5e
ssdeep: 24576:zXk1E7626/nbv/YglvpzSot3GbMuB9SFQOJzlCHMRibjEABc03ut+Vt79jlV9zLv:zXAn8gXtduLST4MimSVkqX
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F7957D63758A8476C0630B346E1FEF96A93AFB547E24578733F01E0C1FB5B4079192AA
sha3_384: ddcee3e291b4e0ff2ff455b25e3f6bb10e3d0433e59dd895d8e6c067ec506e899870b5072eeadda651ea95bd2f4db758
ep_bytes: eb1066623a432b2b484f4f4b90e998b0
timestamp: 2016-05-09 21:49:50

Version Info:

CompanyName: Army Corps of Engineers
FileDescription: Resident Management System
FileVersion: 2.38.2.23
InternalName: QCSUninstall
LegalCopyright:
LegalTrademarks:
OriginalFilename:
ProductName: QCSUninstall
ProductVersion: 2.38.2.23
Comments: 760-247-0217
Translation: 0x0409 0x04e4

Adware.Adstan also known as:

LionicRiskware.Win32.Adstan.1!c
CylanceUnsafe
ZillyaAdware.Adstan.Win32.68
SangforTrojan.Win32.Occamy.CED
K7AntiVirusRiskware ( 0040eff71 )
K7GWRiskware ( 0040eff71 )
SymantecTrojan.Gen.MBT
NANO-AntivirusRiskware.Win32.Adstan.fbditb
AvastFileRepMetagen [Malware]
ComodoApplicUnwnt@#3ryug31oiwhk6
DrWebTrojan.PWS.Hangame.1714
McAfee-GW-EditionBehavesLike.Win32.Dropper.th
SophosGeneric PUA HH (PUA)
JiangminAdWare.Adstan.bm
Antiy-AVLTrojan/Generic.ASMalwS.245A340
MicrosoftTrojan:Win32/Occamy.CED
McAfeeArtemis!B061ABB9C245
VBA32Adware.Adstan
YandexPUA.Adstan!Tk5iSErt2a8
FortinetAdware/Adstan
AVGFileRepMetagen [Malware]
PandaTrj/CI.A

How to remove Adware.Adstan?

Adware.Adstan removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment