Adware

Adware.BetterSurf.B5 information

Malware Removal

The Adware.BetterSurf.B5 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.BetterSurf.B5 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • CAPE detected the shellcode get eip malware family
  • Attempts to create or modify a Browser Helper Object
  • Attempts to modify proxy settings
  • Touches a file containing cookies, possibly for information gathering
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Adware.BetterSurf.B5?


File Info:

name: ACD96C5FD8891C5FAA42.mlw
path: /opt/CAPEv2/storage/binaries/2bae4734cc48b7e22a71b3ed9c9638a42c7db94bd3a564315a5d7cd9b24dcd25
crc32: A32D10BB
md5: acd96c5fd8891c5faa4250ffc89eef92
sha1: 7336b7345e9333c53537cdc08970c4c607046882
sha256: 2bae4734cc48b7e22a71b3ed9c9638a42c7db94bd3a564315a5d7cd9b24dcd25
sha512: 2423e56ad1a6374824b00ea33be29f0e577291a0d3c28dd66c287b3a653052a2cffabb32e40ff7c289b1afb9f7b923c5864ca02254818a2cda10b0140fc71ab9
ssdeep: 12288:zq04OXbp8G4GjeZHkwuPikQ7lKH5p5H9x10eZHkwulizQ1lK55pGxlXTd8zbM:zq0nbp8G4GjeZEXi37l6Br10eZEdic1h
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10DD423EA1FE16133D6CF713B4B34EF9ED6B0B85844E356978F6A1EAE3A813931950140
sha3_384: 23ff5eedfc101a87d0dfd86fdb872631653f39cd027ea9f9c93ec00259683453be6e6d0435a1e0751a6c2dc3bf7f0d98
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-12-05 22:50:52

Version Info:

CompanyName: Media Watch
CompanyWebsite:
FileDescription:
FileVersion: 1.1
LegalCopyright:
ProductName: Media Watch home 2619
ProductVersion: 1.1
Translation: 0x0000 0x04e4

Adware.BetterSurf.B5 also known as:

BkavW32.AIDetectMalware
LionicAdware.Win32.BetterSurf.lXcx
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Adware.BetterSurf.15
FireEyeGen:Variant.Adware.BetterSurf.15
CAT-QuickHealAdware.BetterSurf.B5
SkyhighRDN/Generic PUP.z
ALYacGen:Variant.Adware.BetterSurf.15
MalwarebytesGeneric.Malware.AI.DDS
SangforPUP.Win32.Amonetize.G
K7AntiVirusUnwanted-Program ( 0040f7f51 )
AlibabaAdWare:Win32/Amonetize.3204cee7
K7GWUnwanted-Program ( 0040f7f51 )
CrowdStrikewin/grayware_confidence_100% (D)
VirITTrojan.Win32.Amonetize.K
SymantecAdware.WebexpEnhanced
Elasticmalicious (high confidence)
ESET-NOD32multiple detections
APEXMalicious
CynetMalicious (score: 100)
Kasperskynot-a-virus:AdWare.Win32.BetterSurf.b
BitDefenderGen:Variant.Adware.BetterSurf.15
NANO-AntivirusRiskware.Win32.BetterSurf.cvthxc
AvastNSIS:Amonetize-G [PUP]
TencentWin32.Adware.Bettersurf.Swhl
TACHYONTrojan-Clicker/W32.BetterSurf.649742
EmsisoftApplication.InstallMon (A)
F-SecureAdware.ADWARE/Adware.Gen
DrWebTrojan.Amonetize.10
VIPREGen:Variant.Adware.BetterSurf.15
Trapminemalicious.high.ml.score
SophosBetterSurf (PUA)
Ikarusnot-a-virus:AdWare.Win32.BetterSurf
JiangminAdWare.Amonetize.arbm
WebrootW32.Adware.Gen
VaristW32/Medfos.AE.gen!Eldorado
AviraADWARE/Adware.Gen7
Antiy-AVLTrojan/Win32.Detplock
Kingsoftmalware.kb.a.747
XcitiumApplication.JS.BetterSurf.B@5c6sol
ArcabitTrojan.Adware.BetterSurf.15 [many]
SUPERAntiSpywareAdware.BetterSurf/Variant
ZoneAlarmnot-a-virus:AdWare.Win32.BetterSurf.b
GoogleDetected
AhnLab-V3Adware/Win32.BetterSurf.C233448
McAfeeArtemis!ACD96C5FD889
MAXmalware (ai score=99)
Cylanceunsafe
PandaTrj/NsisDownloader.A
TrendMicro-HouseCallTROJ_SPNR.0BCP14
RisingPUF.Amonetize!8.C5 (TFE:5:cqV4nwXZiWC)
YandexPUA.BetterSurf!sCssgqZEIXc
SentinelOneStatic AI – Suspicious PE
FortinetW32/Amonetize.F!tr
AVGNSIS:Amonetize-G [PUP]
DeepInstinctMALICIOUS

How to remove Adware.BetterSurf.B5?

Adware.BetterSurf.B5 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment