Adware

Adware.Generic.3012521 information

Malware Removal

The Adware.Generic.3012521 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.Generic.3012521 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Adware.Generic.3012521?


File Info:

name: 5B3611E67ADA2D7ECAD3.mlw
path: /opt/CAPEv2/storage/binaries/cfb7c6b5cb66c21e50d61dbd52b27c03fc8e92d47a0f38caf7c28e57dfff9c1a
crc32: 72D8F3A8
md5: 5b3611e67ada2d7ecad36512b9163391
sha1: b3d15e46c431c1e84831fdd3d7e2cbe369ccc2b9
sha256: cfb7c6b5cb66c21e50d61dbd52b27c03fc8e92d47a0f38caf7c28e57dfff9c1a
sha512: 6d1efcb46b372d67ace807d33af96a54508034a29b3bc1b0904eb45dd542735f2513cb1016104fd736f4ec2a189ebe1040ed4a0b7c70b8972e036be60dabf6bd
ssdeep: 49152:bIk+TpdkbI6t1hzOa5jiH0Ban/Y3rjbi3PJIl00RqEeFXcSlqDKno4gSHM/HJ99Y:dMp2F1mHYM/Y3rPyPC+cXK7gX/Jp+
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T124163382F7C399B2E15A4DB8E81EED985E127D6108C654343EF4C70E463A7C26CBB974
sha3_384: 5f447a9862409916a308e2bdef777909e9855f8bcf49f499868f45f1b7e9701e4454591d8a7785ae2e1e4ea478b626cc
ep_bytes: 558bec83c4a453565733c08945c48945
timestamp: 2012-05-29 11:51:48

Version Info:

Comments: This installation was built with Inno Setup.
CompanyName:
FileDescription: Deserunt Setup
FileVersion:
LegalCopyright:
ProductName: Deserunt
ProductVersion: 10.16.20.18
Translation: 0x0000 0x04b0

Adware.Generic.3012521 also known as:

LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanAdware.Generic.3012521
FireEyeAdware.Generic.3012521
McAfeeArtemis!5B3611E67ADA
CylanceUnsafe
SangforTrojan.Win32.Adload.tcpv
K7AntiVirusTrojan ( 0056e5201 )
AlibabaAdWare:Win32/AdLoad.ba9235f4
K7GWTrojan ( 0056e5201 )
CyrenW32/Agent.CVL.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32multiple detections
Paloaltogeneric.ml
KasperskyTrojan-Downloader.Win32.Adload.tcpv
BitDefenderAdware.Generic.3012521
AvastNSIS:Downloader-ADB [Trj]
TencentWin32.Trojan-downloader.Adload.Swbe
Ad-AwareAdware.Generic.3012521
SophosDownload Assistant (PUA)
DrWebTrojan.DownLoader43.43201
TrendMicroTROJ_GEN.R002C0WJG21
McAfee-GW-EditionBehavesLike.Win32.Dropper.rc
EmsisoftAdware.Generic.3012521 (B)
IkarusTrojan.NSIS.Agent
GDataWin32.Backdoor.Bodelph.HGCM26
AviraTR/NSIS.Agent.knmju
ArcabitAdware.Generic.D2DF7A9
MicrosoftTrojan:Win32/Tnega!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Gen.Generic.C4695816
ALYacAdware.Generic.3012521
MAXmalware (ai score=64)
VBA32Trojan.Sabsik.FL
MalwarebytesAdware.DownloadAssistant
TrendMicro-HouseCallTROJ_GEN.R002C0WJG21
FortinetW32/Download_Assistant
AVGNSIS:Downloader-ADB [Trj]
PandaTrj/CI.A

How to remove Adware.Generic.3012521?

Adware.Generic.3012521 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment