Adware

Adware.Generic.1975142 (file analysis)

Malware Removal

The Adware.Generic.1975142 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.Generic.1975142 virus can do?

  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Adware.Generic.1975142?


File Info:

crc32: 2E9777A7
md5: 3e67439b7d78febf67ac79207642d109
name: 3E67439B7D78FEBF67AC79207642D109.mlw
sha1: f4c5c940c44f4ccd406b465bee7c2edf03e59e99
sha256: 2cb94727cc20000c9db84870e81ff6b5a8cd1812a0b91558648176f3a86083f6
sha512: 119d7446a909625c1f16e17b6549fcbd1a48037f0a869b069468c28d6a19d089a05d09bf1b983c7343fca917d942fcd1d92cd4f7bbf430c7ed2ee7f9098f708c
ssdeep: 1536:2pgpHzb9dZVX9fHMvG0D3XJPAwjHkGZJlGMn:cgXdZt9P6D3XJYwjHHJlGMn
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Adware.Generic.1975142 also known as:

K7AntiVirusAdware ( 005475181 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacAdware.Generic.1975142
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/Dotdo.6eb8ca37
K7GWAdware ( 005475181 )
Cybereasonmalicious.b7d78f
CyrenW32/Dotdo.E.gen!Eldorado
SymantecPUA.Gen.2
ESET-NOD32a variant of NSIS/Adware.Runner.B
APEXMalicious
AvastNSIS:AdwareX-gen [Adw]
KasperskyHEUR:Trojan.Win32.Agent.gen
BitDefenderAdware.Generic.1975142
NANO-AntivirusTrojan.Nsis.Dotdo.eyvfyx
MicroWorld-eScanAdware.Generic.1975142
TencentWin32.Trojan.Agent.Lmlb
Ad-AwareAdware.Generic.1975142
SophosGeneric PUA PE (PUA)
ComodoApplicUnwnt@#3nik2oy48vlgp
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R007C0PGC21
McAfee-GW-EditionBehavesLike.Win32.AdwareDotDo.ph
FireEyeAdware.Generic.1975142
EmsisoftAdware.Generic.1975142 (B)
SentinelOneStatic AI – Suspicious PE
AviraHEUR/AGEN.1112124
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataAdware.Generic.1975142
AhnLab-V3Adware/Win.Adware-DotDo.R420399
McAfeeArtemis!3E67439B7D78
VBA32Trojan.Agent
MalwarebytesAdware.DotDo.Generic
TrendMicro-HouseCallTROJ_GEN.R007C0PGC21
RisingAdware.Dotdo/NSIS!1.B0DB (CLASSIC)
FortinetNSIS/Agent.GU!tr
AVGNSIS:AdwareX-gen [Adw]
Paloaltogeneric.ml

How to remove Adware.Generic.1975142?

Adware.Generic.1975142 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment