Adware

Adware.BrowserHijack malicious file

Malware Removal

The Adware.BrowserHijack is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.BrowserHijack virus can do?

  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Uses Windows utilities for basic functionality

How to determine Adware.BrowserHijack?


File Info:

name: 166FD6024483A1B17EB9.mlw
path: /opt/CAPEv2/storage/binaries/6e9e1f428cff84a7977d720e0884639950d1de76e87025204e34c76a58a7a9a9
crc32: 2F49AB7E
md5: 166fd6024483a1b17eb928dc0e2ffce2
sha1: 2e913d7fc794024bcaa99fea447902d9278b46a5
sha256: 6e9e1f428cff84a7977d720e0884639950d1de76e87025204e34c76a58a7a9a9
sha512: 03086c6adde521dcd67791750104b724f8f8a604d36c0a956e27dd96fa3223ee861716b0f13744f08f925106a2fbb15fbbd977bf4d2720fc2a8092d99ccb4ecb
ssdeep: 3072:Y/4u3Yq6fu845a9AZN1a9UcMEFXEiIBKXWpqGZX3jTFyOeE+uCwQxkrnYX:/u3OJR9tmcMm0iIBN8CX3jRyO20rnYX
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FAF302017292C457D5E787B2AE3B4BB79BFBE925246057032B51BB3E7934261880F7C2
sha3_384: d8de595a7f7c40548fb6f6664f1d20ff7ddcc585dac7c7d7864f609a9cb2eb6c127e5269a3ebebb9ae856898ab3c0687
ep_bytes: 81ecd40200005356576a205f33db6801
timestamp: 2019-12-16 00:54:10

Version Info:

CompanyName: me.fo
FileDescription: me.fo
FileVersion: me.fo
LegalCopyright: © me.fo
ProductName: me.fo
Translation: 0x0409 0x04b0

Adware.BrowserHijack also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanHeur.BZC.ONG.Boxter.785.1513E79F
FireEyeGeneric.mg.166fd6024483a1b1
McAfeeArtemis!166FD6024483
CylanceUnsafe
Cybereasonmalicious.24483a
ArcabitHeur.BZC.ONG.Boxter.785.1513E79F
ESET-NOD32a variant of Generik.DEZZZTN potentially unwanted
APEXMalicious
BitDefenderHeur.BZC.ONG.Boxter.785.1513E79F
RisingTrojan.Generic@AI.82 (RDML:RzfI+TFq01DfvDdb8f+stA)
EmsisoftHeur.BZC.ONG.Boxter.785.1513E79F (B)
VIPREHeur.BZC.ONG.Boxter.785.1513E79F
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
SophosGeneric ML PUA (PUA)
JiangminTrojan.Generic.gwsls
WebrootW32.Trojan.Gen
MAXmalware (ai score=89)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataHeur.BZC.ONG.Boxter.785.1513E79F
CynetMalicious (score: 100)
ALYacHeur.BZC.ONG.Boxter.785.1513E79F
VBA32Adware.NSIS.AdPack
MalwarebytesAdware.BrowserHijack
IkarusTrojan.Win32.Adrepack

How to remove Adware.BrowserHijack?

Adware.BrowserHijack removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment