Adware

Adware.FileProxy.3 malicious file

Malware Removal

The Adware.FileProxy.3 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.FileProxy.3 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid

How to determine Adware.FileProxy.3?


File Info:

name: 2F977BDFF640B8DBE3CC.mlw
path: /opt/CAPEv2/storage/binaries/844c92530d721e8e0b212822038c3aba1b3747e085939501c72f025fee3b4863
crc32: 9373B74A
md5: 2f977bdff640b8dbe3cc9ee41d199cd4
sha1: 82b9dd4230273c18b2f90a6403592f0b20c3e022
sha256: 844c92530d721e8e0b212822038c3aba1b3747e085939501c72f025fee3b4863
sha512: 3cea926d15aeea73f8a975a7fae1dd0e7d95316b4d9fb571beb8404f9a3d4efd1280f0f70b0c085c3d4c12a4ac6421759d3df2e2681798a7c682efe6122d788a
ssdeep: 12288:gcP4Q/67INyNoJLIBHXMyj8f+Hjo6TOXSTSeoBzkUS:LzS7oyrB3Myj8fYHTOpeoBFS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1273519207682C13EC9A202B15D7CDA7E6069BE264F6558D7F3DC0F1F3AB45C31A32666
sha3_384: 433b88031e9caf8ec988726f6455c9ca776fa52548d6eda724f46b5df149579deffce64f4eb878e16c18ccc808d3727b
ep_bytes: e8e6400000e97ffeffff558bec568b75
timestamp: 2017-04-13 04:02:33

Version Info:

CompanyName:
FileDescription:
FileVersion: 13.14.1.120
InternalName:
LegalCopyright: Copyright (C) 2014
OriginalFilename:
ProductName:
ProductVersion: 13.14.1.120
Translation: 0x0409 0x04b0

Adware.FileProxy.3 also known as:

BkavW32.AIDetect.malware1
LionicRiskware.Win32.FileProxy.1!c
MicroWorld-eScanGen:Variant.Adware.FileProxy.3
FireEyeGeneric.mg.2f977bdff640b8db
McAfeeArtemis!2F977BDFF640
CylanceUnsafe
ZillyaAdware.Zdengo.Win32.782
SangforTrojan.Win32.Save.a
AlibabaAdWare:Win32/Zdengo.55d7d7a0
CrowdStrikewin/malicious_confidence_90% (D)
BitDefenderThetaGen:NN.ZexaF.34062.bv0@au1bHuai
ESET-NOD32a variant of Win32/Adware.Zdengo.KX
TrendMicro-HouseCallTROJ_GEN.R002C0WKR21
Kasperskynot-a-virus:HEUR:AdWare.Win32.Wajam.gen
BitDefenderGen:Variant.Adware.FileProxy.3
AvastFileRepMalware
Ad-AwareGen:Variant.Adware.FileProxy.3
EmsisoftGen:Variant.Adware.FileProxy.3 (B)
F-SecureAdware.ADWARE/Zdengo.DQ
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0WKR21
McAfee-GW-EditionArtemis
SophosGeneric PUA IC (PUA)
IkarusAdWare.Zdengo
GDataGen:Variant.Adware.FileProxy.3
WebrootW32.Wajam
AviraADWARE/Zdengo.DQ
GridinsoftRansom.Win32.STOP.sa
ViRobotAdware.Zdengo.1064960
MicrosoftTrojan:Win32/Occamy.C84
CynetMalicious (score: 100)
ALYacGen:Variant.Adware.FileProxy.3
MAXmalware (ai score=100)
MalwarebytesAdware.Agent
APEXMalicious
YandexPUA.Zdengo!2VCadEZrROc
FortinetW32/Generic_PUA_IC.KX
AVGFileRepMalware
Cybereasonmalicious.ff640b
PandaTrj/GdSda.A

How to remove Adware.FileProxy.3?

Adware.FileProxy.3 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment