Adware

Adware.Hotbar.19 removal guide

Malware Removal

The Adware.Hotbar.19 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.Hotbar.19 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Enumerates physical drives
  • Attempted to write directly to a physical drive
  • Anomalous binary characteristics
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Adware.Hotbar.19?


File Info:

name: 8DB9264D88E48723F582.mlw
path: /opt/CAPEv2/storage/binaries/077ae4d035a2baae508b3d5a127314a3f1368e94f6bda1d9487b25472dfa3746
crc32: 5E9CD498
md5: 8db9264d88e48723f582c785ae0454ff
sha1: c9cc82debed87c845f14a22e1841c4f40d541ed2
sha256: 077ae4d035a2baae508b3d5a127314a3f1368e94f6bda1d9487b25472dfa3746
sha512: 5ec45995402bb7986c6343b8870573d8bbe0eeed51d2a17695bff0145d1efa2804f26eaa021c0c51754a85dd5a49a77f4e32461fb1d581adb70c39e6fc446425
ssdeep: 6144:yx2zM4qHacdIiKL0Jow78+HpQ6fIqEEviEI21Muxn3EH5QXMlVnjrEacGqCUk:yx2zMzmiTowfIq3viEFRnIGXIVjrE5be
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T118A46B213AE7E036E1724970DBCAD6B5E8AAFD316921240B77E0377E4E34981DD34B19
sha3_384: 2985c0a4a92c2b7fe475d22639ad5cdafd3d43754b16b316bb43943f44823eae74c9a25d4fb1b814a2f6fd1139c12a3e
ep_bytes: e8b49b0000e978feffff8bff558bec8d
timestamp: 2010-10-14 23:29:10

Version Info:

FileDescription: Installer
FileVersion: 2.0.179.0
ProductVersion: 2.0.179.0
Translation: 0x0409 0x30ed

Adware.Hotbar.19 also known as:

BkavW32.AIDetectMalware
LionicAdware.Win32.ScreenSaver.luje
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Adware.Hotbar.19
FireEyeGeneric.mg.8db9264d88e48723
CAT-QuickHealPUA.Pinballcor1.Gen
SkyhighBehavesLike.Win32.AdwareHotBar.gh
McAfeeAdware-HotBar.b
MalwarebytesHotBar.Adware.BrowserHijacker.DDS
ZillyaAdware.HotBar.Win32.284
SangforTrojan.Win32.Save.a
CrowdStrikewin/grayware_confidence_100% (W)
AlibabaAdWare:Win32/Zango.bae5ef07
K7GWTrojan ( 004bcce41 )
K7AntiVirusTrojan ( 004bcce41 )
VirITAdware.Win32.HotBar.DH
SymantecAdware.Clkpotato!gen3
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of Win32/Adware.HotBar.H
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Adinstall-2
Kasperskynot-a-virus:WebToolbar.Win32.Zango.aurx
BitDefenderGen:Variant.Adware.Hotbar.19
NANO-AntivirusRiskware.Win32.HotBar.fzohg
SUPERAntiSpywareAdware.Hotbar/Variant
AvastWin32:ClickPotato-B [PUP]
TencentMalware.Win32.Gencirc.115d3e21
EmsisoftGen:Variant.Adware.Hotbar.19 (B)
BaiduWin32.Trojan.HotBar.a
F-SecureTrojan.TR/Patched.Gen
DrWebAdware.Zango.187
VIPREGen:Variant.Adware.Hotbar.19
TrendMicroTSPY_HOTBAR_CD1029C5.RDXN
Trapminemalicious.high.ml.score
SophosHotbar (PUA)
SentinelOneStatic AI – Malicious PE
JiangminAdware/HotBar.q
VaristW32/HotBar.L.gen!Eldorado
AviraTR/Patched.Gen
MAXmalware (ai score=99)
Antiy-AVLGrayWare[AdWare]/Win32.HotBar
Kingsoftmalware.kb.a.1000
MicrosoftAdware:Win32/ClickPotato
XcitiumPacked.Win32.MUPX.Gen@24tbus
ArcabitTrojan.Adware.Hotbar.19
ZoneAlarmnot-a-virus:WebToolbar.Win32.Zango.aurx
GDataGen:Variant.Adware.Hotbar.19
GoogleDetected
AhnLab-V3Trojan/Win32.Zango.R2345
ALYacGen:Variant.Adware.Hotbar.19
TACHYONAbuse-Worry/W32.Zango.486728
VBA32SScope.TrojanInjector.xg
Cylanceunsafe
TrendMicro-HouseCallTSPY_HOTBAR_CD1029C5.RDXN
RisingAdware.Hotbar!1.6AAD (CLASSIC)
YandexTrojan.GenAsa!Pjon6qpr5uE
IkarusTrojan.SuspectCRC
MaxSecurePoly.Adware.ScreenSaver
FortinetRiskware/Zango
AVGWin32:ClickPotato-B [PUP]
Cybereasonmalicious.d88e48
DeepInstinctMALICIOUS
alibabacloudAdWare:Win/HotBar.H

How to remove Adware.Hotbar.19?

Adware.Hotbar.19 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment