Malware

AdWare.Agent removal tips

Malware Removal

The AdWare.Agent is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AdWare.Agent virus can do?

  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine AdWare.Agent?


File Info:

crc32: 42040852
md5: 7000c97ef50adb95991991483a1c5976
name: Mineast-Gamma.exe
sha1: 54242cd3165a72a9fbd5fca859de6aceecc88dbe
sha256: 971e58fd7e08c3e308625fb482bd37913a7ddcc003569bc8e7817823cf7b4096
sha512: 2fdaafaa9f5f7549aefd6d138e9304dd148dfff5711ee11bea82892e759d44d33d8c4ad1bd103d6d528a0d5a26204fb224cc3ec0d131db82ae9ab4a9584ba4f6
ssdeep: 24576:esSzlEqF+hVcOcFnU19GWJb3VHR1E6CeisMk9IetJ+6TrcOH/LazP4TmOiPPKFR:wl8eOkUbGWJLYw9vhTrBLKwTzwPKH
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Setup Engine Copyright xa9 2004 Indigo Rose Corporation
InternalName: suf70_launch
FileVersion: 7.0.1.0
CompanyName:
PrivateBuild:
LegalTrademarks: Setup Factory is a trademark of Indigo Rose Corporation.
Comments: Created with Setup Factory 7.0
ProductName: Setup Factory 7.0 Runtime
SpecialBuild:
ProductVersion: 7.0.1.0
FileDescription: Setup Application
OriginalFilename: suf70_launch.exe
Translation: 0x0409 0x04e4

AdWare.Agent also known as:

CAT-QuickHealTrojan.IGENERIC
McAfeeArtemis!7000C97EF50A
CylanceUnsafe
AegisLabAdware.Win32.Agent.2!c
K7AntiVirusAdware ( 0050718d1 )
K7GWAdware ( 0050718d1 )
APEXMalicious
AvastWin32:PUP-gen [PUP]
ClamAVWin.Malware.Zusy-6840460-0
GDataWin32.Trojan.Agent.4MTOOK
Kasperskynot-a-virus:AdWare.Win32.Agent.gen
AlibabaAdWare:Win32/Generic.7c90123b
NANO-AntivirusTrojan.Win32.Dwn.dskdvv
ViRobotTrojan.Win32.Z.Agent.1746189
F-SecureTrojan.TR/Agent.1746189
DrWebTrojan.DownLoader11.30631
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R035C0OA320
McAfee-GW-EditionArtemis
Trapminemalicious.moderate.ml.score
CMCTrojan-Downloader.Win32.SetupFactory!O
IkarusTrojan.Agent
CyrenW32/OnlineGames.HI.gen!Eldorado
MaxSecureVirus.W32.Parite.a
AviraTR/Agent.1746189
ZoneAlarmnot-a-virus:AdWare.Win32.Agent.gen
MicrosoftTrojan:Win32/Occamy.C
MAXmalware (ai score=96)
VBA32AdWare.Agent
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
TrendMicro-HouseCallTROJ_GEN.R035C0OA320
eGambitUnsafe.AI_Score_87%
FortinetRiskware/Agent
WebrootW32.Malware.Gen
AVGWin32:PUP-gen [PUP]
Paloaltogeneric.ml
Qihoo-360Trojan.Generic

How to remove AdWare.Agent?

AdWare.Agent removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment