Adware

Adware.ConvertAd.1430 removal guide

Malware Removal

The Adware.ConvertAd.1430 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.ConvertAd.1430 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Anomalous file deletion behavior detected (10+)
  • Guard pages use detected – possible anti-debugging.
  • A process attempted to delay the analysis task.
  • Dynamic (imported) function loading detected
  • Enumerates running processes
  • Expresses interest in specific running processes
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Accessed credential storage registry keys
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Adware.ConvertAd.1430?


File Info:

name: 5E6C442361B552B6DED9.mlw
path: /opt/CAPEv2/storage/binaries/39dee61b3cf95771e33424f7bfb0d63b1f6ffc45d624b8b788a63e826e61c826
crc32: 926855B6
md5: 5e6c442361b552b6ded95c6796e41226
sha1: b4db979ef4bf25170cbcbc7b6701830b1251a6fc
sha256: 39dee61b3cf95771e33424f7bfb0d63b1f6ffc45d624b8b788a63e826e61c826
sha512: 286d573745a7ca3660b2615e0ab4a356b7d7b356ba8a5f7246c0f474a33b896b19ee3d45b4f12a01969fe3243a54cfd1c74f00e65b56d449dcd31717704c1b9e
ssdeep: 24576:X4O5IZIoP6OnXdxlTdm3rH/5lsumYh6kya3+mLOGeBGWt4fd3:/5Ix5xTds5lsVcya3+mQBMfd3
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B03523C58EE48937E623017AAA36073AE73965370771D91F2B51CADA3998371C82F713
sha3_384: 18ecb743cb6a0d3201d6ca407462b1403350625243f63d8ce1f4224f71552a4a3048f59321cfb8c1f73eac0712af3a67
ep_bytes: 81ecd4020000535556576a2033ed5e89
timestamp: 2012-02-24 19:20:09

Version Info:

0: [No Data]

Adware.ConvertAd.1430 also known as:

BkavW32.AIDetect.malware1
LionicAdware.Win32.Generic.2!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Adware.ConvertAd.1430
FireEyeGeneric.mg.5e6c442361b552b6
ALYacGeneric.Adware.ConvertAd.AE6B3522
CylanceUnsafe
K7AntiVirusAdware ( 0052e2431 )
AlibabaAdWare:Win32/ConvertAd.d2b2d56b
K7GWAdware ( 0052e2431 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaGen:NN.ZexaCO.34084.jKW@aCNn!Fki
CyrenW32/S-eb2f91b6!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32multiple detections
TrendMicro-HouseCallTROJ_GEN.R002H0CL521
Paloaltogeneric.ml
Kasperskynot-a-virus:AdWare.Win32.ConvertAd.blij
BitDefenderGen:Variant.Adware.ConvertAd.1430
NANO-AntivirusRiskware.Win32.Amonetize.edyrhx
SUPERAntiSpywarePUP.ConvertAd/Variant
AvastNSIS:ConvertAd-E [Adw]
TencentWin32.Adware.Convertad.Nzhk
EmsisoftGen:Variant.Adware.ConvertAd.1430 (B)
ComodoApplicUnwnt@#1rpnjs127fnlv
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
SophosGeneric PUA LE (PUA)
GDataGeneric.Adware.ConvertAd.AE6B3522
WebrootPua.Gen
MAXmalware (ai score=84)
KingsoftWin32.Troj.Generic_a.a.(kcloud)
ArcabitTrojan.Adware.ConvertAd.D596
APEXMalicious
MicrosoftTrojan:Win32/Wacatac.A!ml
CynetMalicious (score: 100)
Acronissuspicious
McAfeeArtemis!5E6C442361B5
VBA32BScope.Adware.ConvertAd
RisingMalware.Heuristic!ET#96% (RDMK:cmRtazpP/DSsvDoVvqWr81DIhRKA)
YandexPUA.Agent!auHzlAxLbzQ
SentinelOneStatic AI – Malicious PE
AVGNSIS:ConvertAd-E [Adw]
Cybereasonmalicious.361b55
PandaTrj/CI.A

How to remove Adware.ConvertAd.1430?

Adware.ConvertAd.1430 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment