Adware

About “Adware.ConvertAd.1424” infection

Malware Removal

The Adware.ConvertAd.1424 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.ConvertAd.1424 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Expresses interest in specific running processes
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Uses Windows utilities for basic functionality
  • Detects Sandboxie through the presence of a library
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

events.datahouse-us.com
download-servers.com
gdl.scir.bz

How to determine Adware.ConvertAd.1424?


File Info:

crc32: 30C799E8
md5: b415527a09ab24d8a116754050856301
name: B415527A09AB24D8A116754050856301.mlw
sha1: d662a28e20c55cbdce000f4d19695e7d2563bc06
sha256: 2c82b6477b3486af2931290778a71248e6e1034eb07b7b028b9e21363e4f4632
sha512: b6f133e020e58ccd0428819d533972d958dee66686bb61c39a3b56bd78433288a8368417660acc0796329df03a43e4ffb6da5235bd10a0edb704d2e3c2336ed9
ssdeep: 24576:T0fXJ37WNMI/oKt3ZuudHtLvjJFOBWhCs9uEh6huZJlHmS/hT71f:kXJ37wTAe/RJFOBWhCmchuZLH/BJf
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Adware.ConvertAd.1424 also known as:

K7AntiVirusAdware ( 0052e2431 )
LionicAdware.Win32.ConvertAd.2!c
Elasticmalicious (high confidence)
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/ConvertAd.e4edd0dc
K7GWAdware ( 0052e2431 )
Cybereasonmalicious.a09ab2
CyrenW32/S-eb2f91b6!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32multiple detections
APEXMalicious
AvastNSIS:ConvertAd-E [Adw]
CynetMalicious (score: 100)
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Adware.ConvertAd.1424
NANO-AntivirusRiskware.Win32.ConvertAd.ecydie
MicroWorld-eScanGen:Variant.Adware.ConvertAd.1424
TencentWin32.Adware.Generic.Pcif
SophosGeneric ML PUA (PUA)
ComodoMalware@#3m4p8b2pb1j2m
McAfee-GW-EditionBehavesLike.Win32.Downloader.tc
FireEyeGeneric.mg.b415527a09ab24d8
EmsisoftGen:Variant.Adware.ConvertAd.1424 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Downloader.Gen
KingsoftWin32.Troj.ConvertAd.bd.(kcloud)
MicrosoftTrojan:Win32/Wacatac.A!ml
SUPERAntiSpywarePUP.ConvertAd/Variant
ZoneAlarmnot-a-virus:HEUR:AdWare.NSIS.ConvertAd.gen
GDataDeepScan:Generic.Adware.ConvertAd.18705CC6
Acronissuspicious
VBA32BScope.Adware.ConvertAd
MAXmalware (ai score=89)
PandaTrj/CI.A
RisingTrojan.Generic@ML.100 (RDML:FHIHYEkukPKtsXM8hpiR2Q)
YandexPUA.ConvertAd!lcYEVlWb9vA
AVGNSIS:ConvertAd-E [Adw]

How to remove Adware.ConvertAd.1424?

Adware.ConvertAd.1424 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment