Adware

About “Adware.BetterSurf.B5” infection

Malware Removal

The Adware.BetterSurf.B5 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.BetterSurf.B5 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • Attempts to create or modify a Browser Helper Object
  • Attempts to modify proxy settings
  • Touches a file containing cookies, possibly for information gathering

How to determine Adware.BetterSurf.B5?


File Info:

name: 29165A6140F8F9F46386.mlw
path: /opt/CAPEv2/storage/binaries/3481978d7a27cf8d5ab8a0ba49d9dba54025d4846b3c5ce3c7d1a584ac6af55a
crc32: FE9D293E
md5: 29165a6140f8f9f4638603385186c9e2
sha1: 208745f8487618a774f32fc197de1834df49bb69
sha256: 3481978d7a27cf8d5ab8a0ba49d9dba54025d4846b3c5ce3c7d1a584ac6af55a
sha512: 8a42f7304c461c6395bc8d398feadebab9d8ad5cdd0541312c6bc6fd77f4ec4368f1f30e6465c77565b4a36aaf92e6e23a06000e72e6595a311e95dc05d11d8a
ssdeep: 12288:IFMjhfiee7Fus+bG4GjeZHkwuPikQ7lKH5p5H9x1ceZHkwuPivQjlKT5pRxqlfN:IFUhaoHG4GjeZEXi37l6Br1ceZEHioj9
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T187D423DB2FD24137EACAB17D0730EE9DCAF1E89940D366925FA51EBD3AE63D62510100
sha3_384: 4110950730304b28ed6e87a146c4ec7845183b3abaeec692c97f9866800a99b99437f2b20ce0c783675fcbda1d391be0
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-12-05 22:50:52

Version Info:

CompanyName: Media Watch
CompanyWebsite:
FileDescription:
FileVersion: 1.1
LegalCopyright:
ProductName: Media Watch home 1404
ProductVersion: 1.1
Translation: 0x0000 0x04e4

Adware.BetterSurf.B5 also known as:

BkavW32.AIDetectMalware
LionicAdware.Win32.BetterSurf.2!c
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Adware.SwiftBrowse.10
FireEyeGen:Variant.Adware.SwiftBrowse.10
CAT-QuickHealAdware.BetterSurf.B5
SkyhighRDN/Generic PUP.z
ALYacGen:Variant.Adware.SwiftBrowse.10
Cylanceunsafe
ZillyaAdware.Amonetize.Win32.65311
SangforAdware.Win32.Bettersurf.V2sh
K7AntiVirusUnwanted-Program ( 0040f7f51 )
AlibabaAdWare:Win32/Amonetize.527df360
K7GWUnwanted-Program ( 0040f7f51 )
Cybereasonmalicious.140f8f
VirITTrojan.Win32.Amonetize.K
SymantecAdware.WebexpEnhanced
Elasticmalicious (high confidence)
ESET-NOD32multiple detections
APEXMalicious
TrendMicro-HouseCallTROJ_SPNR.0BCU14
McAfeeArtemis!29165A6140F8
ClamAVWin.Dropper.LokiBot-9938750-0
Kasperskynot-a-virus:AdWare.Win32.BetterSurf.b
BitDefenderGen:Variant.Adware.SwiftBrowse.10
NANO-AntivirusRiskware.Win32.BetterSurf.cvthxc
ViRobotAdware.Bettersurf.649734.EU
AvastNSIS:Amonetize-G [PUP]
TencentWin32.Adware.Bettersurf.Cdhl
TACHYONTrojan-Clicker/W32.BetterSurf.649734
EmsisoftApplication.InstallMon (A)
F-SecureAdware.ADWARE/Adware.Gen
DrWebTrojan.Amonetize.10
VIPREGen:Variant.Adware.SwiftBrowse.10
TrendMicroTROJ_SPNR.0BCU14
Trapminemalicious.high.ml.score
SophosBetterSurf (PUA)
SentinelOneStatic AI – Suspicious PE
JiangminAdWare.BetterSurf.e
WebrootW32.Adware.Gen
GoogleDetected
AviraADWARE/Adware.Gen7
VaristW32/Medfos.AE.gen!Eldorado
Antiy-AVLTrojan/Win32.Detplock
KingsoftWin32.Troj.BetterSurf.b
MicrosoftAdware:Win32/BetterSurf
XcitiumApplication.Win32.AdWare.BetterSurf.C@58yosa
ArcabitTrojan.Adware.SwiftBrowse.10 [many]
SUPERAntiSpywareAdware.BetterSurf/Variant
ZoneAlarmnot-a-virus:AdWare.Win32.BetterSurf.b
GDataWin32.Adware.Bettersurf.E
CynetMalicious (score: 100)
AhnLab-V3Adware/Win32.BetterSurf.C233448
MAXmalware (ai score=99)
VBA32Adware.Amonetize
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/NsisDownloader.A
RisingPUF.Amonetize!8.C5 (TFE:5:cqV4nwXZiWC)
YandexPUA.BetterSurf!dKKAFYS33dQ
Ikarusnot-a-virus:AdWare.Win32.BetterSurf
FortinetAdware/BetterSurf
AVGNSIS:Amonetize-G [PUP]
DeepInstinctMALICIOUS
CrowdStrikewin/grayware_confidence_100% (W)
alibabacloudAdWare:Win/BetterSurf.J

How to remove Adware.BetterSurf.B5?

Adware.BetterSurf.B5 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment